Actualité informatique
Test comparatif matériel informatique
Jeux vidéo
Astuces informatique
Vidéo
Télécharger
Services en ligne
Forum informatique
01Business

|-  SECURITE


|||-  

VIRTUMONDE

 

Ajouter une réponse
 

 
Page photos
 
     
Vider la liste des messages à citer
 
 Page :
1  2
Dernière Page
Page Suivante
Page Précédente
Première Page
Auteur
 Sujet :

VIRTUMONDE

Prévenir les modérateurs en cas d'abus 
da dogteur
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 13:46:42  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
:hurle: SLT qq1 peut-il m'aider? VIRTUMONDE est ds mon pc commentl virer???????

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 13:48:06  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonjour, ne crée pas de double sujet stp ;)

 Télécharge ComboFix (créé par sUBs) sur ton Bureau

 Démarre en mode sans échec : http://forum.telecharger.01net [...] ges-1.html


 
  • Double clique combofix.exe.
  • Tape sur la touche 1 pour démarrer le scan puis laisse toi guider.
  • ComboFix redémarrera ton PC
  • Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse

 NOTE : Le rapport se trouve également ici : C:\Combofix.txt

 :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
(Publicité)
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 13:51:06  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
G DJA fait c avec hijackthis c bon?

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 13:53:06  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
non je te donne des instructions, tu les suis et tu fais ce que je te demande stp, sinon on y arrivera pas...

 PS : le langage sms est proscrit sur le forum :o


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 13:54:29  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ok sans probleme

(Publicité)
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 14:28:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
voila le rapport :

 ComboFix 08-07-10.1 - fatlaflamme 2008-07-11 15:01:50.1 - NTFSx86
 Microsoft® Windows Vista™ Édition Familiale Premium   6.0.6000.0.1252.1.1036.18.164 [GMT 2:00]
 Endroit: C:\Users\fatlaflamme\Desktop\C​omboFix.exe
 * Création d'un nouveau point de restauration
 .

 ((((((((((((((((((((((((((((((​((((((   Autres suppressions   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .

 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr0.dat
 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr1.dat
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure\S​pyware-Secure trial.lnk
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure\W​ebsite.lnk
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke.dat
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke.exe
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke_nav.dat
 c:\Users\fatlaflamme\AppData\L​ocal\mumooke_navps.dat
 c:\Users\fatlaflamme\AppData\L​ocal\mumooke_navup.dat
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
 C:\Windows\system32\fCropOFv.d​ll
 C:\Windows\system32\netwbix32.​dll
 C:\Windows\system32\uRLEwtRi.d​ll

 ----- BITS: Possible sites infect‚s -----

 hxxp://premium.virginmega.fr
 .
 (((((((((((((((((((((((((((((   Fichiers cr‚‚s 2008-06-11 to 2008-07-11  ))))))))))))))))))))))))))))))​))))))
 .

 Pas de nouveau fichier cr‚‚ dans cet espace de temps

 .
 ((((((((((((((((((((((((((((((​((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .
 2008-07-11 13:08 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DNA
 2008-07-11 13:07 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\BitTorrent
 2008-07-09 23:51 --------- d-----w C:\ProgramData\Symantec
 2008-07-09 15:26 174 --sha-w C:\Program Files\desktop.ini
 2008-07-09 15:04 --------- d-----w C:\Program Files\Windows Mail
 2008-07-05 08:53 --------- d-----w C:\Program Files\Apple Software Update
 2008-07-04 16:55 --------- d-----w C:\Program Files\YesMessenger
 2008-06-26 18:53 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Azureus
 2008-06-26 15:40 --------- d-----w C:\Program Files\AskSBar
 2008-06-26 14:41 --------- d-----w C:\Program Files\DNA
 2008-06-26 14:41 --------- d-----w C:\Program Files\BitTorrent
 2008-06-26 14:20 --------- d-----w C:\ProgramData\Azureus
 2008-06-26 14:06 --------- d-----w C:\Program Files\Sun
 2008-06-22 16:50 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\EoRezo
 2008-06-22 16:50 --------- d-----w C:\Program Files\EoRezo
 2008-06-22 16:43 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\ItsLabel
 2008-06-21 19:33 --------- d-----w C:\Program Files\DivX
 2008-06-21 19:33 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
 2008-06-21 19:30 20,724,776 ----a-w C:\Users\fatlaflamme\DivXInsta​ller.exe
 2008-06-21 19:13 --------- d-----w C:\ProgramData\DVD X Studios
 2008-06-20 15:43 --------- d-----w C:\ProgramData\Spybot - Search & Destroy
 2008-06-20 15:16 --------- d-----w C:\Program Files\Spybot - Search & Destroy
 2008-06-17 08:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
 2008-06-17 07:55 --------- d-----w C:\Program Files\Mininova
 2008-06-17 07:55 --------- d-----w C:\Program Files\Conduit
 2008-06-17 07:53 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
 2008-06-15 23:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DivX
 2008-06-08 16:34 --------- d-----w C:\ProgramData\Microsoft Help
 2008-06-07 19:57 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Apple Computer
 2008-06-07 19:57 --------- d-----w C:\Program Files\iTunes
 2008-06-07 19:57 --------- d-----w C:\Program Files\iPod
 2008-06-07 19:56 --------- d-----w C:\ProgramData\Apple Computer
 2008-06-07 19:55 --------- d-----w C:\Program Files\Bonjour
 2008-06-07 19:54 --------- d-----w C:\Program Files\QuickTime
 2008-06-07 19:51 --------- d-----w C:\ProgramData\Apple
 2008-06-07 19:51 --------- d-----w C:\Program Files\Common Files\Apple
 2008-06-07 19:38 --------- d-----w C:\ProgramData\eMule
 2008-06-01 11:58 --------- d-----w C:\ProgramData\WLInstaller
 2008-05-31 20:05 --------- d-----w C:\ProgramData\Lavasoft
 2008-05-31 00:10 --------- d-----w C:\Program Files\Norton Internet Security
 2008-05-30 23:47 805 ----a-w C:\Windows\system32\drivers\SY​MEVENT.INF
 2008-05-30 23:47 123,952 ----a-w C:\Windows\system32\drivers\SY​MEVENT.SYS
 2008-05-30 23:47 10,671 ----a-w C:\Windows\system32\drivers\SY​MEVENT.CAT
 2008-05-30 23:47 --------- d-----w C:\Program Files\Symantec
 2008-05-30 23:47 --------- d-----w C:\Program Files\Common Files\Symantec Shared
 2008-05-30 00:47 --------- d-----w C:\ProgramData\CheckPoint
 2008-05-27 12:59 --------- d-----w C:\Program Files\Common Files\Adobe
 2008-05-22 13:31 --------- d-----w C:\Program Files\VirginMega
 2008-05-22 13:30 --------- d-----w C:\ProgramData\Downloaded Installations
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Sidebar
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Defender
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Calendar
 2008-05-21 06:06 70,144 ----a-w C:\Windows\system32\drivers\pa​cer.sys
 2008-05-21 06:06 619,008 ----a-w C:\Windows\system32\drivers\dx​gkrnl.sys
 2008-05-21 06:06 61,952 ----a-w C:\Windows\system32\drivers\wa​narp.sys
 2008-05-21 06:06 48,640 ----a-w C:\Windows\system32\drivers\nd​proxy.sys
 2008-05-21 06:06 20,480 ----a-w C:\Windows\system32\drivers\nd​istapi.sys
 2008-05-21 06:04 258,232 ----a-w C:\Windows\system32\drivers\ac​pi.sys
 2008-05-21 06:04 2,923,520 ----a-w C:\Windows\explorer.exe
 2008-05-21 06:03 110,080 ----a-w C:\Windows\system32\drivers\mr​xdav.sys
 2008-05-21 05:58 41,984 ----a-w C:\Windows\system32\drivers\mo​nitor.sys
 2008-05-21 05:58 1,060,920 ----a-w C:\Windows\system32\drivers\nt​fs.sys
 2008-05-21 05:54 63,488 ----a-w C:\Windows\system32\drivers\mp​sdrv.sys
 2008-05-21 05:54 23,040 ----a-w C:\Windows\system32\drivers\tu​nnel.sys
 2008-05-21 05:54 15,360 ----a-w C:\Windows\system32\drivers\TU​NMP.SYS
 2008-05-21 05:52 45,112 ----a-w C:\Windows\system32\drivers\pc​iidex.sys
 2008-05-21 05:52 211,000 ----a-w C:\Windows\system32\drivers\vo​lsnap.sys
 2008-05-21 05:52 21,560 ----a-w C:\Windows\system32\drivers\at​api.sys
 2008-05-21 05:52 154,624 ----a-w C:\Windows\system32\drivers\nw​ifi.sys
 2008-05-21 05:52 15,928 ----a-w C:\Windows\system32\drivers\pc​iide.sys
 2008-05-21 05:52 109,624 ----a-w C:\Windows\system32\drivers\at​aport.sys
 2008-05-21 05:51 5,888 ----a-w C:\Windows\system32\drivers\us​bd.sys
 2008-05-21 05:51 38,400 ----a-w C:\Windows\system32\drivers\us​behci.sys
 2008-05-21 05:51 224,768 ----a-w C:\Windows\system32\drivers\us​bport.sys
 2008-05-21 05:51 192,000 ----a-w C:\Windows\system32\drivers\us​bhub.sys
 2008-05-21 05:51 19,456 ----a-w C:\Windows\system32\drivers\us​bohci.sys
 2008-05-21 05:49 806,400 ----a-w C:\Windows\system32\drivers\tc​pip.sys
 2008-05-21 05:49 217,144 ----a-w C:\Windows\system32\drivers\ne​tio.sys
 2008-05-21 05:46 54,784 ----a-w C:\Windows\system32\drivers\i8​042prt.sys
 2008-05-21 05:46 495,160 ----a-w C:\Windows\system32\drivers\Wd​f01000.sys
 2008-05-21 05:46 35,384 ----a-w C:\Windows\system32\drivers\Wd​fLdr.sys
 2008-05-21 05:46 35,384 ----a-w C:\Windows\system32\drivers\kb​dclass.sys
 2008-05-21 05:46 34,360 ----a-w C:\Windows\system32\drivers\mo​uclass.sys
 2008-05-21 05:46 19,968 ----a-w C:\Windows\system32\drivers\se​rmouse.sys
 2008-05-21 05:42 --------- d-----w C:\Program Files\Windows Live
 2008-05-21 05:36 84,992 ----a-w C:\Windows\system32\drivers\sr​vnet.sys
 2008-05-21 05:36 58,368 ----a-w C:\Windows\system32\drivers\mr​xsmb20.sys
 2008-05-21 05:36 130,048 ----a-w C:\Windows\system32\drivers\sr​v2.sys
 2008-05-21 05:36 101,888 ----a-w C:\Windows\system32\drivers\mr​xsmb.sys
 2008-05-21 05:33 12,800 ----a-w C:\Windows\system32\drivers\fs​_rec.sys
 2008-05-21 05:33 --------- d-----w C:\Program Files\MSXML 4.0
 2008-05-20 15:59 --------- d-----w C:\Program Files\Windows Live Toolbar
 2008-05-20 15:51 --------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller
 2008-05-15 20:59 --------- d-----w C:\ProgramData\QuickTime
 2008-04-25 04:23 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 .

 ((((((((((((((((((((((((((((((​(((   Point de chargement Reg   ))))))))))))))))))))))))))))))​)))))))))))))))))))
 .
 .
 REGEDIT4
 *Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}]
 2008-06-26 17:40 66912 --a------ C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL

 [HKEY_CURRENT_USER\SOFTWARE\Mic​rosoft\Windows\CurrentVersion\​Run]
 "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-05-21 07:38 1232896]
 "ehTray.exe"="C:\Windows\ehome​\ehTray.exe" [2006-11-02 14:35 125440]
 "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 11:34 5724184]
 "updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe" [2006-03-30 16:45 313472]
 "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
 "BitTorrent DNA"="C:\Users\fatlaflamme\Pro​gram Files\DNA\btdna.exe" [2008-06-26 17:11 289088]
 "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 14:36 201728]
 "WindowsWelcomeCenter"="oobefl​dr.dll" [2006-11-02 14:34 2159104 C:\Windows\System32\oobefldr.dll]

 [HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Run]
 "ccApp"="c:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-11-21 06:33 107112]
 "osCheck"="c:\Program Files\Norton Internet Security\osCheck.exe" [2006-11-21 06:30 22696]
 "Acer Empowering Technology Monitor"="C:\Acer\Empowering Technology\SysMonitor.exe" [2007-01-24 10:27 319488]
 "eDataSecurity Loader"="C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe" [2007-02-07 00:04 464168]
 "RtHDVCpl"="RtHDVCpl.exe" [2007-03-23 13:04 4423680 C:\Windows\RtHDVCpl.exe]

 [HKEY_USERS\.DEFAULT\Software\M​icrosoft\Windows\CurrentVersio​n\Run]
 "StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe" [2006-11-10 12:35 90112]
 "Acer Tour Reminder"="C:\Acer\AcerTour\Re​minder.exe" [2007-02-15 18:39 151552]

 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Startup\
 Empowering Technology Launcher.lnk - C:\Acer\Empowering Technology\eAPLauncher.exe [2007-05-06 21:28:40 528384]
 Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 03:38:16 29696]
 PCM Media Sharing.lnk - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe [2007-05-06 21:33:11 200812]

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\windows nt\currentversion\drivers32]
 "msacm.mkdmp3enc"= C:\PROGRA~1\ACERAR~1\ACERVI~1\​Kernel\Burner\MKDMP3Enc.ACM

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\security center]
 "UacDisableNotify"=dword:00000​001
 "InternetSettingsDisableNotify​"=dword:00000001
 "AutoUpdateDisableNotify"=dwor​d:00000001

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\security center\Monitoring]
 "DisableMonitoring"=dword:0000​0001

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\security center\Monitoring\SymantecAntiVirus]
 "DisableMonitoring"=dword:0000​0001

 [HKEY_LOCAL_MACHINE\software\mi​crosoft\security center\Monitoring\SymantecFirewall]
 "DisableMonitoring"=dword:0000​0001

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Domai​nProfile]
 "EnableFirewall"= 0 (0x0)

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Firew​allRules]
 "{3949DEB9-8DD8-42E4-A506-7B9F​4A231291}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Mi​crosoft Office OneNote
 "{A033DC2D-F311-40C6-91FC-2233​7523B865}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Mi​crosoft Office OneNote
 "{F726BF72-BF4E-4B4F-B9FE-4CDF​4E903131}"= C:\Program Files\Acer Arcade Live\Acer Arcade Live Main Page\Acer Arcade Live.exe:Acer Arcade Live
 "{51674872-C1F2-4F6E-9B9C-A757​F38BE2C6}"= C:\Program Files\Acer Arcade Live\SlideShow DVD\Component\CLSLDVD.exe:Slid​eShow DVD workprocess
 "{00717E99-5B5E-4D82-B899-5B92​0CE145A9}"= C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\ARAWP.exe:D​V Magician ARA workprocess
 "{F90A806B-AED4-4244-AC78-EA10​F3E4F0E6}"= C:\Program Files\Acer Arcade Live\Acer DV Magician\Component\DVAX2Proces​s.exe:DV Magician AVAX workprocess
 "{2EACCE03-44AD-4451-AFA5-833B​35CC35B9}"= C:\Program Files\Acer Arcade Live\Acer DVDivine\DVDivine.exe:DVDivine
 "{39E7738E-3D11-43B9-835D-D16D​2F3B2B0D}"= C:\Program Files\Acer Arcade Live\Acer HomeMedia\HomeMedia.exe:HomeMe​dia
 "{59B339AA-E6E9-43D5-A0ED-DAC8​1D658E12}"= C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\HomeMedia Connect.exe:HomeMedia Connect
 "{B70C9DFF-8065-445C-8092-F386​899335A3}"= C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​EXE:HomeMedia Connect Service
 "{9F52794C-B028-4208-88E2-1D78​370B9A3B}"= C:\Program Files\Acer Arcade Live\Acer VideoMagician\VideoMagician.ex​e:VideoMagician
 "{B02ECD76-E842-4515-91C6-AA5C​197F0BB9}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Wi​ndows Live Messenger (Phone)
 "{474DFB37-479A-4E65-AAFF-B535​03DDECAA}"= UDP:C:\Program Files\Bonjour\mDNSResponder.ex​e:Bonjour
 "{E0C9B401-FAC8-4F6B-A2C3-37F8​0D35B1DD}"= TCP:C:\Program Files\Bonjour\mDNSResponder.ex​e:Bonjour
 "{E719FA5B-AD52-475F-B38D-E281​80BA419D}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes
 "{3F1BE5AC-25B2-4C71-9378-E057​47AEC466}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes
 "{57942508-CBCD-428B-9693-8776​56C56681}"= UDP:C:\Program Files\uTorrent\uTorrent.exe:µT​orrent
 "{6A8987D8-5233-4BE6-89B0-CDEE​24CDCBFE}"= TCP:C:\Program Files\uTorrent\uTorrent.exe:µT​orrent
 "{FA6DC02A-C16E-4021-93AC-25F9​44737B67}"= UDP:C:\Program Files\DNA\btdna.exe:DNA
 "{BAB55305-46FE-4E6F-8CA3-9903​E4935A8B}"= TCP:C:\Program Files\DNA\btdna.exe:DNA
 "{5B7E5444-BC85-4120-8475-0B8A​D7249A1E}"= UDP:C:\Program Files\BitTorrent\bittorrent.ex​e:BitTorrent
 "{8A377E49-3D5A-45B6-9ADF-C6E9​C1DF7EC3}"= TCP:C:\Program Files\BitTorrent\bittorrent.ex​e:BitTorrent

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Publi​cProfile]
 "EnableFirewall"= 0 (0x0)

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Restr​ictedServices\Static\System]
 "DFSR-1"= RPort=5722|UDP:%SystemRoot%\sy​stem32\svchost.exe|Svc=DFSR:Al​low inbound TCP traffic|

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Stand​ardProfile]
 "EnableFirewall"= 0 (0x0)

 [HKLM\~\services\sharedaccess\p​arameters\firewallpolicy\Stand​ardProfile\AuthorizedApplicati​ons\List]
 "C:\\Acer\\Empowering Technology\\eDataSecurity\\eDS​fsu.exe"= C:\Acer\Empowering Technology\eDataSecurity\eDSfs​u.exe:*:Enabled:eDSfsu
 "C:\\Acer\\Empowering Technology\\eDataSecurity\\enc​ryption.exe"= C:\Acer\Empowering Technology\eDataSecurity\encry​ption.exe:*:Enabled:encryption
 "C:\\Acer\\Empowering Technology\\eDataSecurity\\dec​ryption.exe"= C:\Acer\Empowering Technology\eDataSecurity\decry​ption.exe:*:Enabled:decryption
 "C:\\Program Files\\BitTorrent\\bittorrent.​exe"= C:\Program Files\BitTorrent\bittorrent.ex​e:*:Enabled:BitTorrent

 R0 AtiPcie;ATI PCI Express (3GIO) Filter;C:\Windows\system32\DRI​VERS\AtiPcie.sys [2006-10-30 05:22]
 R1 IDSvix86;Symantec Intrusion Prevention Driver;C:\PROGRA~2\Symantec\DE​FINI~1\SymcData\idsdefs\200807​09.001\IDSvix86.sys [2008-05-13 00:27]
 R2 fssfltr;FssFltr;C:\Windows\sys​tem32\DRIVERS\fssfltr.sys [2007-10-17 13:53]
 R3 atikmdag;atikmdag;C:\Windows\s​ystem32\DRIVERS\atikmdag.sys [2007-03-14 16:04]
 R3 SYMNDISV;SYMNDISV;C:\Windows\s​ystem32\Drivers\SYMNDISV.SYS [2006-11-21 06:34]
 R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32​\DRIVERS\yk60x86.sys [2007-12-06 09:51]

 *Newly Created Service* - COMHOST
 .
 Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
 "2008-07-04 18:07:20 C:\Windows\Tasks\Norton Internet Security - Analyse système complète - fatlaflamme.job"

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 14:47:05  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Passe un coup de MalwareBytes (scan complet) et nettoie tout ce qu'il trouve
 Aide : http://www.site-naheulbeuk.com/malwarebytes.php
 Post moi le rapport généré à la fin dans ta prochaine réponse :)

 ;)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 17:30:26  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Malwarebytes' Anti-Malware 1.20
 Version de la base de données: 938
 Windows 6.0.6000

 18:28:27 2008-07-11
 mbam-log-7-11-2008 (18-28-27).txt

 Type de recherche: Examen complet (C:\|D:\|)
 Eléments examinés: 128629
 Temps écoulé: 49 minute(s), 56 second(s)

 Processus mémoire infecté(s): 0
 Module(s) mémoire infecté(s): 0
 Clé(s) du Registre infectée(s): 1
 Valeur(s) du Registre infectée(s): 2
 Elément(s) de données du Registre infecté(s): 0
 Dossier(s) infecté(s): 0
 Fichier(s) infecté(s): 2

 Processus mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Module(s) mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Clé(s) du Registre infectée(s):
 HKEY_CLASSES_ROOT\CLSID\{bc728​c13-5691-4529-a1c2-e662a9ad1c8​7} (Trojan.Vundo) -> Quarantined and deleted successfully.

 Valeur(s) du Registre infectée(s):
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\ShellExecuteHooks\{b​c728c13-5691-4529-a1c2-e662a9a​d1c87} (Trojan.Vundo) -> Quarantined and deleted successfully.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Run\MSServer (Trojan.Agent) -> Quarantined and deleted successfully.

 Elément(s) de données du Registre infecté(s):
 (Aucun élément nuisible détecté)

 Dossier(s) infecté(s):
 (Aucun élément nuisible détecté)

 Fichier(s) infecté(s):
 C:\QooBox\Quarantine\C\Windows​\System32\fCropOFv.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.
 C:\QooBox\Quarantine\C\Windows​\System32\uRLEwtRi.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully.

(Publicité)
  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 17:57:29  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Télécharge HijackThis

 Guide d'utilisation : http://www.site-naheulbeuk.com/hijackthis.php

 Clique alors sur "Do a system scan and save a logfile"
 Le scan se fait très rapidement, puis un bloc-note apparaît
 (le "logfile" )
 Dans ce bloc-note, va dans "Edition", puis "Selectionner Tout",
 le texte est alors séléctionné, retourne dans "Edition" toujours
 en laissant le texte séléctionné, et clique sur copier.
 Colle le contenu ici dans ta prochaine réponse !

 :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 18:08:44  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 19:05, on 2008-07-11
 Platform: Windows Vista  (WinNT 6.00.1904)
 MSIE: Internet Explorer v7.00 (7.00.6000.16681)
 Boot mode: Normal

 Running processes:
 C:\Windows\system32\Dwm.exe
 C:\Windows\Explorer.EXE
 C:\Windows\system32\taskeng.ex​e
 C:\Windows\RtHDVCpl.exe
 C:\Program Files\Common Files\Symantec Shared\ccApp.exe
 C:\Acer\Empowering Technology\SysMonitor.exe
 C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 C:\Program Files\Windows Sidebar\sidebar.exe
 C:\Windows\ehome\ehtray.exe
 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
 C:\Windows\ehome\ehmsas.exe
 C:\Users\fatlaflamme\Program Files\DNA\btdna.exe
 C:\Program Files\Windows Media Player\wmpnscfg.exe
 C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 C:\Acer\Empowering Technology\ACER.EMPOWERING.FRA​MEWORK.SUPERVISOR.EXE
 C:\Acer\Empowering Technology\eRecovery\ERAGENT.E​XE
 C:\Windows\System32\mobsync.ex​e
 C:\Program Files\Internet Explorer\IEUser.exe
 C:\Windows\system32\wuauclt.ex​e
 C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
 C:\Program Files\BitTorrent\bittorrent.ex​e
 C:\Windows\system32\SearchFilt​erHost.exe
 C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e
 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
 C:\Program Files\Windows Media Player\wmplayer.exe
 C:\Program Files\Internet Explorer\iexplore.exe

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://lo.st/FATOUMATA.COM
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = *.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me =
 R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695E​CA05670} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A5​3123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\Np​pBho.dll
 O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3​d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
 O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723​696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.d​ll (file missing)
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9​C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UI​BHO.dll
 O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB​0476E29} - C:\Windows\system32\eDStoolbar​.dll
 O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
 O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
 O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
 O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
 O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
 O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
 O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe AcRdB7_1_0
 O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\fatlaflamme\Program Files\DNA\btdna.exe"
 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
 O4 - HKCU\..\Run: [uouuw] c:\users\fatlaflamme\appdata\l​ocal\uouuw.exe uouuw
 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'Default user')
 O4 - Global Startup: Empowering Technology Launcher.lnk = ?
 O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Off​ice12\EXCEL.EXE/3000
 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5​71A8263} - C:\PROGRA~1\MICROS~2\Office12\​REFIEBAR.DLL
 O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
 O13 - Gopher Prefix:
 O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw [...] ontrol.cab
 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05C​B959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w [...] dfr-fr.cab
 O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B0​9B0E737} (Windows Live Photo Upload Control) - http://cid-0a58109c267d32cd.sp [...] dfr-fr.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​exe
 O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemChe​ck.exe
 O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
 O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSSe​rvice.exe
 O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecovery​Service.exe
 O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
 O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
 O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\​LUCOMS~1.EXE
 O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61​-B58F-2F227FCA9A08}\PIFSvc.exe
 O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe
 O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
 O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
 O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

 --
 End of file - 10799 bytes

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 22:14:19  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Télécharge Navilog1.exe (Il Mafioso) sur ton bureau

 Aide pour Navilog1 : http://www.site-naheulbeuk.com/navilog.php

 Si tu es sous vista : désactive l'UAC !

 Ensuite double clique sur navilog1.exe pour lancer l'installation.
 Une fois l'installation terminée, le fix s'exécutera automatiquement.
 (Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

 Laisse-toi guider. Au menu principal, choisis 1 et valides.
 /!\ N'utilise pas l'option 2,3 et 4 sans notre accord /!\

 Patiente jusqu'au message :
 "*** Analyse Termine le ..... ***"
 Appuie sur une touche comme demandé, le blocnote va s'ouvrir.
 Copie-colle l'intégralité dans une réponse. Referme le blocnote.
 Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)

 Poste-nous son contenu de cette manière :

 -> Edition / Sélectionner tout
 -> Edition / Copier
 -> Clique-Droit / Coller dans ta réponse


 :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
(Publicité)
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 11/07/2008 à 23:08:36  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Search Navipromo version 3.6.0 commencé le 2008-07-11 à 23:55:33.96

 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
 !!! Postez ce rapport sur le forum pour le faire analyser !!!
 !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

 Outil exécuté depuis C:\Program Files\navilog1
 Session actuelle : "fatlaflamme"

 Mise à jour le 27.06.2008 à 23h00 par IL-MAFIOSO

 Microsoft Windows Vista 6.0.6000
 Internet Explorer : 7.0.6000.16681
 Système de fichiers : NTFS

 Recherche executé en mode normal

 *** Recherche Programmes installés ***


 *** Recherche dossiers dans "C:\Windows" ***


 *** Recherche dossiers dans "C:\Program Files" ***


 *** Recherche dossiers dans "C:\ProgramData" ***


 *** Recherche dossiers dans "c:\progra~2\micros~1\windows\​startm~1\programs" ***


 *** Recherche dossiers dans "c:\users\fatlaf~1\appdata\roa​ming\micros~1\windows\startm~1​\programs" ***


 *** Recherche dossiers dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\Program Files" ***


 *** Recherche dossiers dans "C:\Users\fatlaflamme\AppData\​Roaming" ***

 *** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
 pour + d'infos : http://www.gmer.net

 Aucun Fichier trouvé


 *** Recherche avec GenericNaviSearch ***
 !!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
 !!! A vérifier impérativement avant toute suppression manuelle !!!

 * Recherche dans "C:\Windows\system32" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local" *



 *** Recherche fichiers ***



 *** Recherche clés spécifiques dans le Registre ***


 *** Module de Recherche complémentaire ***
 (Recherche fichiers spécifiques)

 1)Recherche nouveaux fichiers Instant Access :


 2)Recherche Heuristique :

 * Dans "C:\Windows\system32" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local" :


 3)Recherche Certificats :

 Certificat Egroup absent !
 Certificat Electronic-Group trouvé !
 Certificat OOO-Favorit trouvé !
 Certificat Sunny-Day-Design-Ltd absent !

 4)Recherche fichiers connus :



 *** Analyse terminée le 2008-07-12 à  0:03:24.68 ***

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 11/07/2008 à 23:20:57  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Double clique sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.

 Aide pour la désinfection : http://www.site-naheulbeuk.com [...] sinfection

 Au menu principal, choisis 2 et valide.

 Le fix va t'informer qu'il va alors redémarrer ton PC
 Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
 Appuie sur une touche comme demandé.
 (si ton Pc ne redémarre pas automatiquement, fais le toi même)
 Au redémarrage de ton PC, choisis ta session habituelle.

 Patiente jusqu'au message :
 "*** Nettoyage Termine le ..... ***"
 Le bloc-notes va s'ouvrir.
 Sauvegarde le rapport de manière à le retrouver
 Referme le bloc-notes. Ton bureau va réapparaitre

 Post le rapport cleannavi sauvegardé auparavant.

 NOTES :
 
  • Le rapport se trouve également ici : %root%\cleannavi.txt
  • Si ton Bureau ne réapparaît pas, fais ceci :
-> Clique simultanément sur Ctrl + Alt + Suppr.
 Clique sur l'onglet Fichier puis choisis Nouvelle tâche.
 Tape Explorer puis valide.
 -> Choisis Exécuter..., tape Explorer puis valide.

 ;)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/07/2008 à 20:22:40  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
salut Naheulbeuk,
 

 j'ai un souci : lorsque mon PC redemarre je ne reçois aucun message est-ce que je doit rcommencer avec Navilog1?

(Publicité)
  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 12/07/2008 à 22:07:21  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
oui recommence pour voir stp ;)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/07/2008 à 22:23:02  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Search Navipromo version 3.6.0 commencé le 2008-07-12 à 23:14:09.60

 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
 !!! Postez ce rapport sur le forum pour le faire analyser !!!
 !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

 Outil exécuté depuis C:\Program Files\navilog1
 Session actuelle : "fatlaflamme"

 Mise à jour le 27.06.2008 à 23h00 par IL-MAFIOSO

 Microsoft Windows Vista 6.0.6000
 Internet Explorer : 7.0.6000.16681
 Système de fichiers : NTFS

 Recherche executé en mode normal

 *** Recherche Programmes installés ***


 *** Recherche dossiers dans "C:\Windows" ***


 *** Recherche dossiers dans "C:\Program Files" ***


 *** Recherche dossiers dans "C:\ProgramData" ***


 *** Recherche dossiers dans "c:\progra~2\micros~1\windows\​startm~1\programs" ***


 *** Recherche dossiers dans "c:\users\fatlaf~1\appdata\roa​ming\micros~1\windows\startm~1​\programs" ***


 *** Recherche dossiers dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\Program Files" ***


 *** Recherche dossiers dans "C:\Users\fatlaflamme\AppData\​Roaming" ***

 *** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
 pour + d'infos : http://www.gmer.net

 Aucun Fichier trouvé


 *** Recherche avec GenericNaviSearch ***
 !!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
 !!! A vérifier impérativement avant toute suppression manuelle !!!

 * Recherche dans "C:\Windows\system32" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" *

 * Recherche dans "C:\Users\fatlaflamme\AppData\​Local" *



 *** Recherche fichiers ***



 *** Recherche clés spécifiques dans le Registre ***


 *** Module de Recherche complémentaire ***
 (Recherche fichiers spécifiques)

 1)Recherche nouveaux fichiers Instant Access :


 2)Recherche Heuristique :

 * Dans "C:\Windows\system32" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" :


 * Dans "C:\Users\fatlaflamme\AppData\​Local" :


 3)Recherche Certificats :

 Certificat Egroup absent !
 Certificat Electronic-Group trouvé !
 Certificat OOO-Favorit trouvé !
 Certificat Sunny-Day-Design-Ltd absent !

 4)Recherche fichiers connus :



 *** Analyse terminée le 2008-07-12 à 23:22:13.84 ***

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 12/07/2008 à 22:40:20  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Voila Naheulbeuk j' ai recommencé le PC a redémarré mais je n'ai tjrs pas le rapport.

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 13/07/2008 à 14:49:49  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonjour,

 Démarrer -> panneau de configuration -> options internet
 Clique sur l'onglet "Contenu" puis onglet "Certificats" et si tu trouves ceci, en particulier dans "éditeurs approuvés" :

 Electronic-Group ; OOO-Favorit

 => Supprime-les tous

 ensuite post moi un nouveau rapport hijackthis !

 bonne journée :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/07/2008 à 16:24:05  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
voila c'est fait j'ai suprimé Electronic-group et OOO-favorit
 donc voila le rapport hijackthis :

 Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 17:20, on 2008-07-13
 Platform: Windows Vista  (WinNT 6.00.1904)
 MSIE: Internet Explorer v7.00 (7.00.6000.16681)
 Boot mode: Normal

 Running processes:
 C:\Windows\system32\Dwm.exe
 C:\Windows\Explorer.EXE
 C:\Windows\system32\taskeng.ex​e
 C:\Windows\RtHDVCpl.exe
 C:\Program Files\Common Files\Symantec Shared\ccApp.exe
 C:\Acer\Empowering Technology\SysMonitor.exe
 C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 C:\Program Files\Windows Sidebar\sidebar.exe
 C:\Windows\ehome\ehtray.exe
 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
 C:\Windows\ehome\ehmsas.exe
 C:\Program Files\DNA\btdna.exe
 C:\Program Files\Windows Media Player\wmpnscfg.exe
 C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 C:\Acer\Empowering Technology\ACER.EMPOWERING.FRA​MEWORK.SUPERVISOR.EXE
 C:\Acer\Empowering Technology\eRecovery\ERAGENT.E​XE
 C:\Windows\System32\mobsync.ex​e
 C:\Program Files\Windows Media Player\wmplayer.exe
 C:\Windows\system32\DllHost.ex​e
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
 C:\Windows\system32\conime.exe
 C:\Windows\system32\dfrgui.exe
 C:\Windows\system32\SearchFilt​erHost.exe
 C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://lo.st/FATOUMATA.COM
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = *.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me =
 R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695E​CA05670} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A5​3123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\Np​pBho.dll
 O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3​d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
 O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723​696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.d​ll (file missing)
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9​C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UI​BHO.dll
 O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB​0476E29} - C:\Windows\system32\eDStoolbar​.dll
 O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
 O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
 O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
 O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
 O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
 O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
 O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe AcRdB7_1_0
 O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
 O4 - HKCU\..\Run: [uouuw] c:\users\fatlaflamme\appdata\l​ocal\uouuw.exe uouuw
 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
 O4 - HKLM\..\Policies\Explorer\Run: [] 
 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\RunOnce: []  (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-20\..\RunOnce: []  (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'SYSTEM')
 O4 - HKUS\S-1-5-18\..\RunOnce: []  (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'Default user')
 O4 - HKUS\.DEFAULT\..\RunOnce: []  (User 'Default user')
 O4 - Global Startup: Empowering Technology Launcher.lnk = ?
 O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Off​ice12\EXCEL.EXE/3000
 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5​71A8263} - C:\PROGRA~1\MICROS~2\Office12\​REFIEBAR.DLL
 O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
 O13 - Gopher Prefix:
 O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw [...] ontrol.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​exe
 O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemChe​ck.exe
 O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
 O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
 O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSSe​rvice.exe
 O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecovery​Service.exe
 O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
 O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
 O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\​LUCOMS~1.EXE
 O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61​-B58F-2F227FCA9A08}\PIFSvc.exe
 O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe
 O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
 O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
 O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

 --
 End of file - 10746 bytes

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/07/2008 à 16:24:09  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
voila c'est fait j'ai suprimé Electronic-group et OOO-favorit
 donc voila le rapport hijackthis :

 Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 17:20, on 2008-07-13
 Platform: Windows Vista  (WinNT 6.00.1904)
 MSIE: Internet Explorer v7.00 (7.00.6000.16681)
 Boot mode: Normal

 Running processes:
 C:\Windows\system32\Dwm.exe
 C:\Windows\Explorer.EXE
 C:\Windows\system32\taskeng.ex​e
 C:\Windows\RtHDVCpl.exe
 C:\Program Files\Common Files\Symantec Shared\ccApp.exe
 C:\Acer\Empowering Technology\SysMonitor.exe
 C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 C:\Program Files\Windows Sidebar\sidebar.exe
 C:\Windows\ehome\ehtray.exe
 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
 C:\Windows\ehome\ehmsas.exe
 C:\Program Files\DNA\btdna.exe
 C:\Program Files\Windows Media Player\wmpnscfg.exe
 C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 C:\Acer\Empowering Technology\ACER.EMPOWERING.FRA​MEWORK.SUPERVISOR.EXE
 C:\Acer\Empowering Technology\eRecovery\ERAGENT.E​XE
 C:\Windows\System32\mobsync.ex​e
 C:\Program Files\Windows Media Player\wmplayer.exe
 C:\Windows\system32\DllHost.ex​e
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
 C:\Windows\system32\conime.exe
 C:\Windows\system32\dfrgui.exe
 C:\Windows\system32\SearchFilt​erHost.exe
 C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://lo.st/FATOUMATA.COM
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = *.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me =
 R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695E​CA05670} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A5​3123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\Np​pBho.dll
 O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3​d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
 O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723​696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.d​ll (file missing)
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9​C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UI​BHO.dll
 O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB​0476E29} - C:\Windows\system32\eDStoolbar​.dll
 O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
 O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
 O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
 O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
 O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
 O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
 O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe AcRdB7_1_0
 O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
 O4 - HKCU\..\Run: [uouuw] c:\users\fatlaflamme\appdata\l​ocal\uouuw.exe uouuw
 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
 O4 - HKLM\..\Policies\Explorer\Run: [] 
 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\RunOnce: []  (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-20\..\RunOnce: []  (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'SYSTEM')
 O4 - HKUS\S-1-5-18\..\RunOnce: []  (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'Default user')
 O4 - HKUS\.DEFAULT\..\RunOnce: []  (User 'Default user')
 O4 - Global Startup: Empowering Technology Launcher.lnk = ?
 O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Off​ice12\EXCEL.EXE/3000
 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5​71A8263} - C:\PROGRA~1\MICROS~2\Office12\​REFIEBAR.DLL
 O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
 O13 - Gopher Prefix:
 O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw [...] ontrol.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​exe
 O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemChe​ck.exe
 O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
 O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
 O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSSe​rvice.exe
 O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecovery​Service.exe
 O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
 O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
 O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\​LUCOMS~1.EXE
 O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61​-B58F-2F227FCA9A08}\PIFSvc.exe
 O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe
 O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
 O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
 O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

 --
 End of file - 10746 bytes

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 13/07/2008 à 16:27:48  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Double clique sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.
 Au menu principal, choisis 4 et valide.

 Le fix va te demander de saisir le nom de fichier.
 Saisies ce qui est en gras ci-dessous et rien d'autre puis valide:

 uouuw

 Le fix va te demander de le resaisir, fais-le et valide

 Le fix va t'informer qu'il va alors redémarrer ton PC
 Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
 Appuie sur une touche comme demandé.
 (si ton Pc ne redémarre pas automatiquement, fais le toi même)
 Au redémarrage de ton PC, choisis ta session habituelle.

 Patiente jusqu'au message :
 "*** Nettoyage Termine le ..... ***"
 Le bloc-notes va s'ouvrir.
 Sauvegarde le rapport de manière à le retrouver
 Referme le bloc-notes. Ton bureau va réapparaitre

 Post le rapport cleannavi sauvegardé auparavant.

 NOTES :
 
  • Si ton Bureau ne réapparaît pas, fais ceci :
-> Clique simultanément sur Ctrl + Alt + Suppr.
 Clique sur l'onglet Fichier puis choisis Nouvelle tâche.
 Tape Explorer puis valide.
 -> Choisis Exécuter..., tape Explorer puis valide.

 :super:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/07/2008 à 17:12:07  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
cette fois ci j'ai u le rapport au redémarrage :



 Clean Navipromo version 3.6.0 commencé le 2008-07-13 à 17:57:21.19

 Outil exécuté depuis C:\Program Files\navilog1
 Session actuelle : "fatlaflamme"

 Mise à jour le 27.06.2008 à 23h00 par IL-MAFIOSO

 Microsoft Windows Vista 6.0.6000
 Internet Explorer : 7.0.6000.16681
 Système de fichiers : NTFS


 Mode suppression par méthode manuelle

 Nom du fichier saisi : uouuw

 Nettoyage exécuté au redémarrage de l'ordinateur

 *** Recherche, création sauvegardes et suppression ***

 * Suppression dans "C:\Windows\system32" *

 * Suppression dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" *

 * Suppression dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" *

 * Suppression dans "C:\Users\fatlaflamme\AppData\​Local" *


 *** Suppression dossiers dans "C:\Windows" ***


 *** Suppression dossiers dans "C:\Program Files" ***


 *** Suppression dossiers dans "C:\ProgramData" ***


 *** Suppression dossiers dans "c:\progra~2\micros~1\windows\​startm~1\programs" ***


 *** Suppression dossiers dans c:\users\fatlaf~1\appdata\roam​ing\micros~1\windows\startm~1\​programs ***


 *** Suppression dossiers dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\Program Files" ***


 *** Suppression dossiers dans "C:\Users\fatlaflamme\AppData\​Roaming" ***



 *** Suppression fichiers ***


 *** Suppression fichiers temporaires ***

 Nettoyage contenu C:\Windows\Temp effectué !
 Nettoyage contenu C:\Users\FATLAF~1\AppData\Loca​l\Temp effectué !

 *** Traitement Recherche complémentaire ***
 (Recherche fichiers spécifiques)

 1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

 2)Recherche, création sauvegardes et suppression Heuristique :


 * Dans "C:\Windows\system32" *


 * Dans "C:\Users\fatlaflamme\AppData\​Local\Microsoft" *


 * Dans "C:\Users\fatlaflamme\AppData\​Local\virtualstore\windows\sys​tem32" *


 * Dans "C:\Users\fatlaflamme\AppData\​Local" *


 *** Sauvegarde du Registre vers dossier Safebackup ***

 sauvegarde du Registre réalisée avec succès !

 *** Nettoyage Registre ***

 Nettoyage Registre Ok


 *** Certificats ***

 Certificat Egroup absent !
 Certificat Electronic-Group absent !
 Certificat OOO-Favorit absent !
 Certificat Sunny-Day-Design-Ltdt absent !

 *** Nettoyage terminé le 2008-07-13 à 18:05:26.50 ***

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 13/07/2008 à 18:29:28  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Télécharge ComboFix (créé par sUBs) sur ton Bureau

 Démarre en mode sans échec : http://forum.telecharger.01net [...] ges-1.html


 
  • Double clique combofix.exe.
  • Tape sur la touche 1 pour démarrer le scan puis laisse toi guider.
  • ComboFix redémarrera ton PC
  • Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse,et nouveau rapport hijackthis

 NOTE : Le rapport se trouve également ici : C:\Combofix.txt

 :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 13/07/2008 à 21:10:18  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
peux-tu m'expliquer coment on démarre en mode sans échec avec vista???

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 14/07/2008 à 09:12:17  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
google est ton ami :p

 http://www.forum-vista.net/ast [...] s-a290.htm

 :D


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 15/07/2008 à 21:18:56  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ComboFix 08-07-10.1 - fatlaflamme 2008-07-15 21:46:53.2 - NTFSx86 MINIMAL
 Microsoft® Windows Vista™ Édition Familiale Premium   6.0.6000.0.1252.1.1036.18.492 [GMT 2:00]
 Endroit: C:\Users\fatlaflamme\Desktop\C​omboFix.exe
 .

 ((((((((((((((((((((((((((((((​((((((   Autres suppressions   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .

 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr0.dat
 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr1.dat
 .
 ---- Previous Run -------
 .
 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr0.dat
 C:\ProgramData\Microsoft\Netwo​rk\Downloader\qmgr1.dat
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure\S​pyware-Secure trial.lnk
 C:\ProgramData\Microsoft\Windo​ws\Start Menu\Programs\Spyware-Secure\W​ebsite.lnk
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke.dat
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke.exe
 C:\Users\fatlaflamme\AppData\L​ocal\mumooke_nav.dat
 c:\Users\fatlaflamme\AppData\L​ocal\mumooke_navps.dat
 c:\Users\fatlaflamme\AppData\L​ocal\mumooke_navup.dat
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\Windows\Start Menu\Programs\Spyware-Secure
 C:\Windows\system32\fCropOFv.d​ll
 C:\Windows\system32\netwbix32.​dll
 C:\Windows\system32\uRLEwtRi.d​ll

 ----- BITS: Possible sites infectés -----

 hxxp://premium.virginmega.fr
 .
 (((((((((((((((((((((((((((((   Fichiers créés 2008-06-15 to 2008-07-15  ))))))))))))))))))))))))))))))​))))))
 .

 Pas de nouveau fichier créé dans cet espace de temps

 .
 ((((((((((((((((((((((((((((((​((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .
 2008-07-15 19:41 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DNA
 2008-07-15 19:33 --------- d-----w C:\ProgramData\Symantec
 2008-07-15 19:23 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\BitTorrent
 2008-07-14 17:52 --------- d-----w C:\ProgramData\Stardock
 2008-07-14 17:51 --------- d-----w C:\Program Files\Stardock
 2008-07-14 17:44 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Hamachi
 2008-07-14 17:39 25,280 ----a-w C:\Windows\system32\drivers\ha​machi.sys
 2008-07-14 09:52 --------- d-----w C:\Program Files\Pizzicato 3.3
 2008-07-13 23:49 --------- d-----w C:\Program Files\metronimo
 2008-07-13 17:42 --------- d-----w C:\Program Files\Gcompris
 2008-07-13 17:34 89,444,689 ----a-w C:\Program Files\gcompris-8.3.6.exe
 2008-07-13 16:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\GrabIt
 2008-07-13 16:05 --------- d-----w C:\Program Files\Navilog1
 2008-07-13 15:38 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Reasonable Software House Ltd
 2008-07-13 11:43 107,888 ----a-w C:\Windows\System32\CmdLineExt​.dll
 2008-07-13 11:43 --------- d--h--r C:\Users\fatlaflamme\AppData\R​oaming\SecuROM
 2008-07-12 20:05 --------- d-----w C:\ProgramData\BOONTY
 2008-07-12 20:05 --------- d-----w C:\Program Files\Common Files\BOONTY Shared
 2008-07-11 17:04 --------- d-----w C:\Program Files\Trend Micro
 2008-07-11 16:43 --------- d-----w C:\ProgramData\Spybot - Search & Destroy
 2008-07-11 14:44 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
 2008-07-11 14:42 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Malwarebytes
 2008-07-11 14:42 --------- d-----w C:\ProgramData\Malwarebytes
 2008-07-09 15:26 174 --sha-w C:\Program Files\desktop.ini
 2008-07-09 15:04 --------- d-----w C:\Program Files\Windows Mail
 2008-07-07 15:35 34,296 ----a-w C:\Windows\system32\drivers\mb​amcatchme.sys
 2008-07-07 15:35 17,144 ----a-w C:\Windows\system32\drivers\mb​am.sys
 2008-07-05 08:53 --------- d-----w C:\Program Files\Apple Software Update
 2008-07-04 16:55 --------- d-----w C:\Program Files\YesMessenger
 2008-06-26 18:53 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Azureus
 2008-06-26 15:40 --------- d-----w C:\Program Files\AskSBar
 2008-06-26 14:41 --------- d-----w C:\Program Files\DNA
 2008-06-26 14:41 --------- d-----w C:\Program Files\BitTorrent
 2008-06-26 14:20 --------- d-----w C:\ProgramData\Azureus
 2008-06-26 14:06 --------- d-----w C:\Program Files\Sun
 2008-06-26 00:34 7,964,672 ----a-w C:\Windows\System32\NlsLexicon​s0024.dll
 2008-06-26 00:33 9,892,864 ----a-w C:\Windows\System32\NlsLexicon​s000a.dll
 2008-06-22 16:50 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\EoRezo
 2008-06-22 16:50 --------- d-----w C:\Program Files\EoRezo
 2008-06-22 16:43 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\ItsLabel
 2008-06-21 19:33 --------- d-----w C:\Program Files\DivX
 2008-06-21 19:33 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
 2008-06-21 19:30 20,724,776 ----a-w C:\Users\fatlaflamme\DivXInsta​ller.exe
 2008-06-21 19:13 --------- d-----w C:\ProgramData\DVD X Studios
 2008-06-17 08:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
 2008-06-17 07:55 --------- d-----w C:\Program Files\Conduit
 2008-06-17 07:53 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
 2008-06-15 23:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DivX
 2008-06-08 16:34 --------- d-----w C:\ProgramData\Microsoft Help
 2008-06-07 19:57 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Apple Computer
 2008-06-07 19:57 --------- d-----w C:\Program Files\iTunes
 2008-06-07 19:57 --------- d-----w C:\Program Files\iPod
 2008-06-07 19:56 --------- d-----w C:\ProgramData\Apple Computer
 2008-06-07 19:55 --------- d-----w C:\Program Files\Bonjour
 2008-06-07 19:54 --------- d-----w C:\Program Files\QuickTime
 2008-06-07 19:51 --------- d-----w C:\ProgramData\Apple
 2008-06-07 19:51 --------- d-----w C:\Program Files\Common Files\Apple
 2008-06-07 19:38 --------- d-----w C:\ProgramData\eMule
 2008-06-01 11:58 --------- d-----w C:\ProgramData\WLInstaller
 2008-05-31 20:05 --------- d-----w C:\ProgramData\Lavasoft
 2008-05-31 00:10 --------- d-----w C:\Program Files\Norton Internet Security
 2008-05-30 23:47 805 ----a-w C:\Windows\system32\drivers\SY​MEVENT.INF
 2008-05-30 23:47 123,952 ----a-w C:\Windows\system32\drivers\SY​MEVENT.SYS
 2008-05-30 23:47 10,671 ----a-w C:\Windows\system32\drivers\SY​MEVENT.CAT
 2008-05-30 23:47 --------- d-----w C:\Program Files\Symantec
 2008-05-30 23:47 --------- d-----w C:\Program Files\Common Files\Symantec Shared
 2008-05-30 23:22 823,296 ----a-w C:\Windows\System32\divx_xx0c.​dll
 2008-05-30 23:22 823,296 ----a-w C:\Windows\System32\divx_xx07.​dll
 2008-05-30 23:22 815,104 ----a-w C:\Windows\System32\divx_xx0a.​dll
 2008-05-30 23:22 802,816 ----a-w C:\Windows\System32\divx_xx11.​dll
 2008-05-30 23:22 683,520 ----a-w C:\Windows\System32\DivX.dll
 2008-05-30 23:22 593,920 ----a-w C:\Windows\System32\dpuGUI11.d​ll
 2008-05-30 23:22 57,344 ----a-w C:\Windows\System32\dpv11.dll
 2008-05-30 23:22 53,248 ----a-w C:\Windows\System32\dpuGUI10.d​ll
 2008-05-30 23:22 344,064 ----a-w C:\Windows\System32\dpus11.dll
 2008-05-30 23:22 294,912 ----a-w C:\Windows\System32\dpu11.dll
 2008-05-30 23:22 294,912 ----a-w C:\Windows\System32\dpu10.dll
 2008-05-30 00:47 --------- d-----w C:\ProgramData\CheckPoint
 2008-05-27 12:59 --------- d-----w C:\Program Files\Common Files\Adobe
 2008-05-22 22:22 524,288 ----a-w C:\Windows\System32\DivXsm.exe
 2008-05-22 22:22 3,596,288 ----a-w C:\Windows\System32\qt-dx331.d​ll
 2008-05-22 22:20 200,704 ----a-w C:\Windows\System32\ssldivx.dl​l
 2008-05-22 22:20 1,044,480 ----a-w C:\Windows\System32\libdivx.dl​l
 2008-05-22 22:19 81,920 ----a-w C:\Windows\System32\dpl100.dll
 2008-05-22 22:19 196,608 ----a-w C:\Windows\System32\dtu100.dll
 2008-05-22 22:19 161,096 ----a-w C:\Windows\System32\DivXCodecV​ersionChecker.exe
 2008-05-22 22:18 12,288 ----a-w C:\Windows\System32\DivXWMPExt​Type.dll
 2008-05-22 13:31 --------- d-----w C:\Program Files\VirginMega
 2008-05-22 13:30 --------- d-----w C:\ProgramData\Downloaded Installations
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Sidebar
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Defender
 2008-05-21 06:15 --------- d-----w C:\Program Files\Windows Calendar
 2008-05-21 06:05 87,040 ----a-w C:\Windows\System32\msoert2.dl​l
 2008-05-21 06:05 39,424 ----a-w C:\Windows\System32\ACCTRES.dl​l
 2008-05-21 06:05 205,824 ----a-w C:\Windows\System32\msoeacct.d​ll
 2008-05-21 06:04 704,000 ----a-w C:\Windows\System32\PhotoScree​nsaver.scr
 2008-05-21 06:04 67,584 ----a-w C:\Windows\System32\wlanhlp.dl​l
 2008-05-21 06:04 542,720 ----a-w C:\Windows\System32\sysmain.dl​l
 2008-05-21 06:04 502,784 ----a-w C:\Windows\System32\wlansvc.dl​l
 2008-05-21 06:04 47,104 ----a-w C:\Windows\System32\wlanapi.dl​l
 .

 (((((((((((((((((((((((((((((   snapshot@2008-07-11_15.16.14.4​0   ))))))))))))))))))))))))))))))​)))))))))))
 .
 - 2008-07-11 13:10:02 67,584 --s-a-w C:\Windows\bootstat.dat
 + 2008-07-15 19:42:56 67,584 --s-a-w C:\Windows\bootstat.dat
 - 2008-07-11 13:10:44 262,144 --sha-w C:\Windows\ServiceProfiles\Loc​alService\NTUSER.DAT
 + 2008-07-15 19:42:19 262,144 --sha-w C:\Windows\ServiceProfiles\Loc​alService\NTUSER.DAT
 - 2008-07-11 13:10:44 262,144 --sha-w C:\Windows\ServiceProfiles\Net​workService\NTUSER.DAT
 + 2008-07-15 19:42:19 262,144 --sha-w C:\Windows\ServiceProfiles\Net​workService\NTUSER.DAT
 - 2008-07-11 12:45:48 16,384 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Local\Micro​soft\Windows\History\History.I​E5\index.dat
 + 2008-07-15 19:37:27 16,384 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Local\Micro​soft\Windows\History\History.I​E5\index.dat
 - 2008-07-11 12:45:48 32,768 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Local\Micro​soft\Windows\Temporary Internet Files\Content.IE5\index.dat
 + 2008-07-15 19:37:27 32,768 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Local\Micro​soft\Windows\Temporary Internet Files\Content.IE5\index.dat
 - 2008-07-11 12:45:48 16,384 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Roaming\Mic​rosoft\Windows\Cookies\index.d​at
 + 2008-07-15 19:37:27 16,384 --sha-w C:\Windows\System32\config\sys​temprofile\AppData\Roaming\Mic​rosoft\Windows\Cookies\index.d​at
 + 1998-07-12 23:00:00 31,232 ----a-w C:\Windows\System32\DBLSTFR.DL​L
 + 2005-08-10 12:44:04 50,688 ----a-w C:\Windows\System32\drivers\sf​drv01.sys
 + 2005-05-16 13:20:39 6,656 ----a-w C:\Windows\System32\drivers\sf​hlp02.sys
 + 2007-02-18 10:05:28 621,056 ----a-w C:\Windows\System32\dx7vb.dll
 + 2007-02-18 10:05:28 1,225,216 ----a-w C:\Windows\System32\dx8vb.dll
 - 2008-05-30 07:30:55 295,976 ----a-w C:\Windows\System32\FNTCACHE.D​AT
 + 2008-07-14 13:31:22 296,688 ----a-w C:\Windows\System32\FNTCACHE.D​AT
 - 2008-05-29 23:35:11 17,486,968 ----a-w C:\Windows\System32\mrt.exe
 + 2008-06-25 16:15:46 17,972,344 ----a-w C:\Windows\System32\mrt.exe
 - 2006-11-02 09:46:11 797,696 ----a-w C:\Windows\System32\NaturalLan​guage6.dll
 + 2008-06-26 03:22:33 797,696 ----a-w C:\Windows\System32\NaturalLan​guage6.dll
 + 2008-07-14 17:41:09 2,456 ----a-w C:\Windows\System32\networklis​t\icons\{00297026-B541-47F3-87​8C-B593F2EFCBA1}_24.bin
 + 2008-07-14 17:41:09 4,280 ----a-w C:\Windows\System32\networklis​t\icons\{00297026-B541-47F3-87​8C-B593F2EFCBA1}_32.bin
 + 2008-07-14 17:41:09 9,560 ----a-w C:\Windows\System32\networklis​t\icons\{00297026-B541-47F3-87​8C-B593F2EFCBA1}_48.bin
 - 2006-11-02 09:46:11 1,523,200 ----a-w C:\Windows\System32\NlsData000​0.dll
 + 2008-06-26 03:22:33 1,523,200 ----a-w C:\Windows\System32\NlsData000​0.dll
 - 2006-11-02 09:46:11 2,597,888 ----a-w C:\Windows\System32\NlsData000​1.dll
 + 2008-06-26 03:22:33 2,597,888 ----a-w C:\Windows\System32\NlsData000​1.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData000​2.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData000​2.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData000​3.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData000​3.dll
 - 2006-11-02 09:46:11 2,241,024 ----a-w C:\Windows\System32\NlsData000​7.dll
 + 2008-06-26 03:22:33 2,241,024 ----a-w C:\Windows\System32\NlsData000​7.dll
 - 2006-11-02 09:46:11 4,874,240 ----a-w C:\Windows\System32\NlsData000​9.dll
 + 2008-06-26 03:22:33 4,874,240 ----a-w C:\Windows\System32\NlsData000​9.dll
 - 2006-11-02 09:46:11 9,845,248 ----a-w C:\Windows\System32\NlsData000​a.dll
 + 2008-06-26 03:22:33 9,845,248 ----a-w C:\Windows\System32\NlsData000​a.dll
 - 2006-11-02 09:46:11 2,641,408 ----a-w C:\Windows\System32\NlsData000​c.dll
 + 2008-06-26 03:22:33 2,641,408 ----a-w C:\Windows\System32\NlsData000​c.dll
 - 2006-11-02 09:46:11 2,340,864 ----a-w C:\Windows\System32\NlsData000​d.dll
 + 2008-06-26 03:22:33 2,340,864 ----a-w C:\Windows\System32\NlsData000​d.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData000​f.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData000​f.dll
 - 2006-11-02 09:46:11 4,493,312 ----a-w C:\Windows\System32\NlsData001​0.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\System32\NlsData001​0.dll
 - 2006-11-02 09:46:11 2,655,232 ----a-w C:\Windows\System32\NlsData001​1.dll
 + 2008-06-26 03:22:33 2,655,232 ----a-w C:\Windows\System32\NlsData001​1.dll
 - 2006-11-02 09:46:11 3,464,704 ----a-w C:\Windows\System32\NlsData001​3.dll
 + 2008-06-26 03:22:33 3,464,704 ----a-w C:\Windows\System32\NlsData001​3.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData001​8.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData001​8.dll
 - 2006-11-02 09:46:11 4,495,360 ----a-w C:\Windows\System32\NlsData001​9.dll
 + 2008-06-26 03:22:33 4,495,360 ----a-w C:\Windows\System32\NlsData001​9.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData001​a.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData001​a.dll
 - 2006-11-02 09:46:11 1,963,520 ----a-w C:\Windows\System32\NlsData001​b.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData001​b.dll
 - 2006-11-02 09:46:11 4,493,312 ----a-w C:\Windows\System32\NlsData001​d.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\System32\NlsData001​d.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData002​0.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData002​0.dll
 - 2006-11-02 09:46:12 1,799,168 ----a-w C:\Windows\System32\NlsData002​1.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\System32\NlsData002​1.dll
 - 2006-11-02 09:46:12 1,799,168 ----a-w C:\Windows\System32\NlsData002​2.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\System32\NlsData002​2.dll
 - 2006-11-02 09:46:12 1,963,520 ----a-w C:\Windows\System32\NlsData002​4.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData002​4.dll
 - 2006-11-02 09:46:12 1,963,520 ----a-w C:\Windows\System32\NlsData002​6.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData002​6.dll
 - 2006-11-02 09:46:12 1,965,056 ----a-w C:\Windows\System32\NlsData002​7.dll
 + 2008-06-26 03:22:33 1,965,056 ----a-w C:\Windows\System32\NlsData002​7.dll
 - 2006-11-02 09:46:12 1,799,168 ----a-w C:\Windows\System32\NlsData002​a.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\System32\NlsData002​a.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData003​9.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData003​9.dll
 - 2006-11-02 09:46:12 1,799,168 ----a-w C:\Windows\System32\NlsData003​e.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\System32\NlsData003​e.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​5.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​5.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​6.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​6.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​7.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​7.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​9.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​9.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​a.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​a.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​b.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​b.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​c.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​c.dll
 - 2006-11-02 09:46:12 3,102,720 ----a-w C:\Windows\System32\NlsData004​e.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\System32\NlsData004​e.dll
 - 2006-11-02 09:46:12 4,493,312 ----a-w C:\Windows\System32\NlsData041​4.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\System32\NlsData041​4.dll
 - 2006-11-02 09:46:12 4,493,312 ----a-w C:\Windows\System32\NlsData041​6.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\System32\NlsData041​6.dll
 - 2006-11-02 09:46:12 4,493,312 ----a-w C:\Windows\System32\NlsData081​6.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\System32\NlsData081​6.dll
 - 2006-11-02 09:46:12 1,963,520 ----a-w C:\Windows\System32\NlsData081​a.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData081​a.dll
 - 2006-11-02 09:46:12 1,963,520 ----a-w C:\Windows\System32\NlsData0c1​a.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\System32\NlsData0c1​a.dll
 - 2006-11-02 08:21:55 11,722,752 ----a-w C:\Windows\System32\NlsLexicon​s0001.dll
 + 2008-06-26 00:33:04 11,722,752 ----a-w C:\Windows\System32\NlsLexicon​s0001.dll
 - 2006-11-02 08:22:34 4,164,096 ----a-w C:\Windows\System32\NlsLexicon​s0002.dll
 + 2008-06-26 00:34:20 4,164,096 ----a-w C:\Windows\System32\NlsLexicon​s0002.dll
 - 2006-11-02 08:22:13 1,452,544 ----a-w C:\Windows\System32\NlsLexicon​s0003.dll
 + 2008-06-26 00:33:41 1,452,544 ----a-w C:\Windows\System32\NlsLexicon​s0003.dll
 - 2006-11-02 08:22:07 12,038,656 ----a-w C:\Windows\System32\NlsLexicon​s0007.dll
 + 2008-06-26 00:33:35 12,240,896 ----a-w C:\Windows\System32\NlsLexicon​s0007.dll
 - 2006-11-02 08:22:05 2,628,608 ----a-w C:\Windows\System32\NlsLexicon​s0009.dll
 + 2008-06-26 00:33:33 2,644,480 ----a-w C:\Windows\System32\NlsLexicon​s0009.dll
 - 2006-11-02 08:22:06 6,237,696 ----a-w C:\Windows\System32\NlsLexicon​s000c.dll
 + 2008-06-26 00:33:34 6,237,696 ----a-w C:\Windows\System32\NlsLexicon​s000c.dll
 - 2006-11-02 08:22:09 1,722,368 ----a-w C:\Windows\System32\NlsLexicon​s000d.dll
 + 2008-06-26 00:33:36 1,722,368 ----a-w C:\Windows\System32\NlsLexicon​s000d.dll
 - 2006-11-02 08:22:17 5,654,528 ----a-w C:\Windows\System32\NlsLexicon​s000f.dll
 + 2008-06-26 00:33:48 5,654,528 ----a-w C:\Windows\System32\NlsLexicon​s000f.dll
 - 2006-11-02 08:22:18 4,175,872 ----a-w C:\Windows\System32\NlsLexicon​s0010.dll
 + 2008-06-26 00:33:49 4,175,872 ----a-w C:\Windows\System32\NlsLexicon​s0010.dll
 - 2006-11-02 08:22:10 2,466,816 ----a-w C:\Windows\System32\NlsLexicon​s0011.dll
 + 2008-06-26 00:33:37 2,466,816 ----a-w C:\Windows\System32\NlsLexicon​s0011.dll
 - 2006-11-02 08:21:58 4,981,248 ----a-w C:\Windows\System32\NlsLexicon​s0013.dll
 + 2008-06-26 00:33:12 4,981,248 ----a-w C:\Windows\System32\NlsLexicon​s0013.dll
 - 2006-11-02 08:22:25 3,331,072 ----a-w C:\Windows\System32\NlsLexicon​s0018.dll
 + 2008-06-26 00:34:01 3,331,072 ----a-w C:\Windows\System32\NlsLexicon​s0018.dll
 - 2006-11-02 08:22:26 6,781,440 ----a-w C:\Windows\System32\NlsLexicon​s0019.dll
 + 2008-06-26 00:34:03 6,781,440 ----a-w C:\Windows\System32\NlsLexicon​s0019.dll
 - 2006-11-02 08:22:14 6,014,976 ----a-w C:\Windows\System32\NlsLexicon​s001a.dll
 + 2008-06-26 00:33:43 6,014,976 ----a-w C:\Windows\System32\NlsLexicon​s001a.dll
 - 2006-11-02 08:22:47 6,585,856 ----a-w C:\Windows\System32\NlsLexicon​s001b.dll
 + 2008-06-26 00:34:37 6,585,856 ----a-w C:\Windows\System32\NlsLexicon​s001b.dll
 - 2006-11-02 08:22:31 6,346,240 ----a-w C:\Windows\System32\NlsLexicon​s001d.dll
 + 2008-06-26 00:34:14 6,346,240 ----a-w C:\Windows\System32\NlsLexicon​s001d.dll
 - 2006-11-02 08:22:45 1,236,992 ----a-w C:\Windows\System32\NlsLexicon​s0020.dll
 + 2008-06-26 00:34:34 1,236,992 ----a-w C:\Windows\System32\NlsLexicon​s0020.dll
 - 2006-11-02 08:22:12 2,136,064 ----a-w C:\Windows\System32\NlsLexicon​s0021.dll
 + 2008-06-26 00:33:40 2,136,064 ----a-w C:\Windows\System32\NlsLexicon​s0021.dll
 - 2006-11-02 08:22:44 5,499,904 ----a-w C:\Windows\System32\NlsLexicon​s0022.dll
 + 2008-06-26 00:34:33 5,499,904 ----a-w C:\Windows\System32\NlsLexicon​s0022.dll
 - 2006-11-02 08:22:42 5,791,232 ----a-w C:\Windows\System32\NlsLexicon​s0026.dll
 + 2008-06-26 00:34:30 5,791,232 ----a-w C:\Windows\System32\NlsLexicon​s0026.dll
 - 2006-11-02 08:22:19 6,224,896 ----a-w C:\Windows\System32\NlsLexicon​s0027.dll
 + 2008-06-26 00:33:50 6,224,896 ----a-w C:\Windows\System32\NlsLexicon​s0027.dll
 - 2006-11-02 08:22:41 4,096 ----a-w C:\Windows\System32\NlsLexicon​s002a.dll
 + 2008-06-26 00:34:26 4,096 ----a-w C:\Windows\System32\NlsLexicon​s002a.dll
 - 2006-11-02 08:22:16 1,782,272 ----a-w C:\Windows\System32\NlsLexicon​s0039.dll
 + 2008-06-26 00:33:46 1,782,272 ----a-w C:\Windows\System32\NlsLexicon​s0039.dll
 - 2006-11-02 08:22:20 4,045,824 ----a-w C:\Windows\System32\NlsLexicon​s003e.dll
 + 2008-06-26 00:33:52 4,045,824 ----a-w C:\Windows\System32\NlsLexicon​s003e.dll
 - 2006-11-02 08:22:33 1,793,536 ----a-w C:\Windows\System32\NlsLexicon​s0045.dll
 + 2008-06-26 00:34:18 1,793,536 ----a-w C:\Windows\System32\NlsLexicon​s0045.dll
 - 2006-11-02 08:22:25 1,808,896 ----a-w C:\Windows\System32\NlsLexicon​s0046.dll
 + 2008-06-26 00:33:58 1,808,896 ----a-w C:\Windows\System32\NlsLexicon​s0046.dll
 - 2006-11-02 08:22:15 1,411,072 ----a-w C:\Windows\System32\NlsLexicon​s0047.dll
 + 2008-06-26 00:33:45 1,411,072 ----a-w C:\Windows\System32\NlsLexicon​s0047.dll
 - 2006-11-02 08:22:39 1,558,016 ----a-w C:\Windows\System32\NlsLexicon​s0049.dll
 + 2008-06-26 00:34:24 1,558,016 ----a-w C:\Windows\System32\NlsLexicon​s0049.dll
 - 2006-11-02 08:22:39 3,419,136 ----a-w C:\Windows\System32\NlsLexicon​s004a.dll
 + 2008-06-26 00:34:25 3,419,136 ----a-w C:\Windows\System32\NlsLexicon​s004a.dll
 - 2006-11-02 08:22:36 1,702,912 ----a-w C:\Windows\System32\NlsLexicon​s004b.dll
 + 2008-06-26 00:34:22 1,702,912 ----a-w C:\Windows\System32\NlsLexicon​s004b.dll
 - 2006-11-02 08:22:46 4,093,440 ----a-w C:\Windows\System32\NlsLexicon​s004c.dll
 + 2008-06-26 00:34:36 4,093,440 ----a-w C:\Windows\System32\NlsLexicon​s004c.dll
 - 2006-11-02 08:22:37 1,972,736 ----a-w C:\Windows\System32\NlsLexicon​s004e.dll
 + 2008-06-26 00:34:23 1,972,736 ----a-w C:\Windows\System32\NlsLexicon​s004e.dll
 - 2006-11-02 08:22:21 4,616,192 ----a-w C:\Windows\System32\NlsLexicon​s0414.dll
 + 2008-06-26 00:33:54 4,616,192 ----a-w C:\Windows\System32\NlsLexicon​s0414.dll
 - 2006-11-02 08:22:24 5,090,816 ----a-w C:\Windows\System32\NlsLexicon​s0416.dll
 + 2008-06-26 00:33:57 5,090,816 ----a-w C:\Windows\System32\NlsLexicon​s0416.dll
 - 2006-11-02 08:22:22 5,031,936 ----a-w C:\Windows\System32\NlsLexicon​s0816.dll
 + 2008-06-26 00:33:56 5,031,936 ----a-w C:\Windows\System32\NlsLexicon​s0816.dll
 - 2006-11-02 08:22:29 7,042,560 ----a-w C:\Windows\System32\NlsLexicon​s081a.dll
 + 2008-06-26 00:34:11 7,042,560 ----a-w C:\Windows\System32\NlsLexicon​s081a.dll
 - 2006-11-02 08:22:27 6,917,120 ----a-w C:\Windows\System32\NlsLexicon​s0c1a.dll
 + 2008-06-26 00:34:09 6,917,120 ----a-w C:\Windows\System32\NlsLexicon​s0c1a.dll
 - 2006-11-02 08:21:54 5,071,872 ----a-w C:\Windows\System32\NlsModels0​011.dll
 + 2008-06-26 00:33:01 5,071,872 ----a-w C:\Windows\System32\NlsModels0​011.dll
 - 2008-07-10 20:43:07 103,986 ----a-w C:\Windows\System32\perfc009.d​at
 + 2008-07-15 19:08:55 103,986 ----a-w C:\Windows\System32\perfc009.d​at
 - 2008-07-10 20:43:07 117,676 ----a-w C:\Windows\System32\perfc00C.d​at
 + 2008-07-15 19:08:55 117,676 ----a-w C:\Windows\System32\perfc00C.d​at
 - 2008-07-10 20:43:07 610,204 ----a-w C:\Windows\System32\perfh009.d​at
 + 2008-07-15 19:08:55 610,204 ----a-w C:\Windows\System32\perfh009.d​at
 - 2008-07-10 20:43:07 690,888 ----a-w C:\Windows\System32\perfh00C.d​at
 + 2008-07-15 19:08:55 690,888 ----a-w C:\Windows\System32\perfh00C.d​at
 - 2008-07-10 00:42:00 6,291,456 ----a-w C:\Windows\System32\SMI\Store\​Machine\SCHEMA.DAT
 + 2008-07-11 18:42:29 6,291,456 ----a-w C:\Windows\System32\SMI\Store\​Machine\SCHEMA.DAT
 + 1998-06-17 23:00:00 89,360 ----a-w C:\Windows\System32\VB5DB.DLL
 + 2000-10-01 23:00:00 119,568 ----a-w C:\Windows\System32\VB6FR.DLL
 + 1999-03-25 22:00:00 101,888 ----a-w C:\Windows\System32\VB6STKIT.D​LL
 - 2008-07-11 10:37:01 7,040 ----a-w C:\Windows\System32\WDI\{86432​a0b-3c7d-4ddf-a89c-172faa90485​d}\S-1-5-21-592921199-40546130​89-3936924042-1000_UserData.bi​n
 + 2008-07-15 19:27:51 8,116 ----a-w C:\Windows\System32\WDI\{86432​a0b-3c7d-4ddf-a89c-172faa90485​d}\S-1-5-21-592921199-40546130​89-3936924042-1000_UserData.bi​n
 - 2008-07-11 10:37:00 61,762 ----a-w C:\Windows\System32\WDI\BootPe​rformanceDiagnostics_SystemDat​a.bin
 + 2008-07-15 19:27:51 62,818 ----a-w C:\Windows\System32\WDI\BootPe​rformanceDiagnostics_SystemDat​a.bin
 - 2008-07-11 13:08:58 4,634 ----a-w C:\Windows\System32\WDI\ERCQue​uedResolutions.dat
 + 2008-07-15 19:42:06 5,966 ----a-w C:\Windows\System32\WDI\ERCQue​uedResolutions.dat
 - 2008-07-11 13:11:58 51,770 ----a-w C:\Windows\System32\WDI\Shutdo​wnPerformanceDiagnostics_Syste​mData.bin
 + 2008-07-15 19:27:46 53,036 ----a-w C:\Windows\System32\WDI\Shutdo​wnPerformanceDiagnostics_Syste​mData.bin
 - 2008-07-09 10:18:52 112,546,323 ----a-w C:\Windows\winsxs\ManifestCach​e\6.0.6001.18000_001c50b5_blob​s.bin
 + 2008-07-11 16:51:33 112,914,947 ----a-w C:\Windows\winsxs\ManifestCach​e\6.0.6001.18000_001c50b5_blob​s.bin
 + 2008-06-26 03:22:33 797,696 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NaturalLa​nguage6.dll
 + 2008-06-26 03:22:33 1,523,200 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​00.dll
 + 2008-06-26 03:22:33 2,597,888 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​01.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​02.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​03.dll
 + 2008-06-26 03:22:33 2,241,024 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​07.dll
 + 2008-06-26 03:22:33 4,874,240 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​09.dll
 + 2008-06-26 03:22:33 9,845,248 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​0a.dll
 + 2008-06-26 03:22:33 2,641,408 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​0c.dll
 + 2008-06-26 03:22:33 2,340,864 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​0d.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​0f.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​10.dll
 + 2008-06-26 03:22:33 2,655,232 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​11.dll
 + 2008-06-26 03:22:33 3,464,704 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​13.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​18.dll
 + 2008-06-26 03:22:33 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​19.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​1a.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​1b.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​1d.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​20.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​21.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​22.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​24.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​26.dll
 + 2008-06-26 03:22:33 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​27.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​2a.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​39.dll
 + 2008-06-26 03:22:33 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​3e.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​45.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​46.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​47.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​49.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​4a.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​4b.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​4c.dll
 + 2008-06-26 03:22:33 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData00​4e.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData04​14.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData04​16.dll
 + 2008-06-26 03:22:33 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData08​16.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData08​1a.dll
 + 2008-06-26 03:22:33 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsData0c​1a.dll
 + 2008-06-26 00:33:04 11,722,752 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0001.dll
 + 2008-06-26 00:34:20 4,164,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0002.dll
 + 2008-06-26 00:33:41 1,452,544 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0003.dll
 + 2008-06-26 00:33:35 12,240,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0007.dll
 + 2008-06-26 00:33:33 2,644,480 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0009.dll
 + 2008-06-26 00:33:39 9,892,864 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns000a.dll
 + 2008-06-26 00:33:34 6,237,696 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns000c.dll
 + 2008-06-26 00:33:36 1,722,368 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns000d.dll
 + 2008-06-26 00:33:48 5,654,528 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns000f.dll
 + 2008-06-26 00:33:49 4,175,872 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0010.dll
 + 2008-06-26 00:33:37 2,466,816 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0011.dll
 + 2008-06-26 00:33:12 4,981,248 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0013.dll
 + 2008-06-26 00:34:01 3,331,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0018.dll
 + 2008-06-26 00:34:03 6,781,440 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0019.dll
 + 2008-06-26 00:33:43 6,014,976 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns001a.dll
 + 2008-06-26 00:34:37 6,585,856 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns001b.dll
 + 2008-06-26 00:34:14 6,346,240 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns001d.dll
 + 2008-06-26 00:34:34 1,236,992 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0020.dll
 + 2008-06-26 00:33:40 2,136,064 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0021.dll
 + 2008-06-26 00:34:33 5,499,904 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0022.dll
 + 2008-06-26 00:34:39 7,964,672 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0024.dll
 + 2008-06-26 00:34:30 5,791,232 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0026.dll
 + 2008-06-26 00:33:50 6,224,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0027.dll
 + 2008-06-26 00:34:26 4,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns002a.dll
 + 2008-06-26 00:33:46 1,782,272 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0039.dll
 + 2008-06-26 00:33:52 4,045,824 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns003e.dll
 + 2008-06-26 00:34:18 1,793,536 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0045.dll
 + 2008-06-26 00:33:58 1,808,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0046.dll
 + 2008-06-26 00:33:45 1,411,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0047.dll
 + 2008-06-26 00:34:24 1,558,016 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0049.dll
 + 2008-06-26 00:34:25 3,419,136 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns004a.dll
 + 2008-06-26 00:34:22 1,702,912 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns004b.dll
 + 2008-06-26 00:34:36 4,093,440 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns004c.dll
 + 2008-06-26 00:34:23 1,972,736 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns004e.dll
 + 2008-06-26 00:33:54 4,616,192 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0414.dll
 + 2008-06-26 00:33:57 5,090,816 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0416.dll
 + 2008-06-26 00:33:56 5,031,936 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0816.dll
 + 2008-06-26 00:34:11 7,042,560 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns081a.dll
 + 2008-06-26 00:34:09 6,917,120 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsLexico​ns0c1a.dll
 + 2008-06-26 00:33:01 5,071,872 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.16710_n​one_9be9c78e2d9d5d54\NlsModels​0011.dll
 + 2008-06-26 03:18:12 797,696 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NaturalLa​nguage6.dll
 + 2008-06-26 03:18:18 1,523,200 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​00.dll
 + 2008-06-26 03:18:19 2,597,888 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​01.dll
 + 2008-06-26 03:18:20 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​02.dll
 + 2008-06-26 03:18:21 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​03.dll
 + 2008-06-26 03:18:21 2,241,024 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​07.dll
 + 2008-06-26 03:18:22 4,874,240 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​09.dll
 + 2008-06-26 03:18:24 9,845,248 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​0a.dll
 + 2008-06-26 03:18:24 2,641,408 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​0c.dll
 + 2008-06-26 03:18:26 2,340,864 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​0d.dll
 + 2008-06-26 03:18:26 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​0f.dll
 + 2008-06-26 03:18:30 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​10.dll
 + 2008-06-26 03:18:32 2,655,232 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​11.dll
 + 2008-06-26 03:18:33 3,464,704 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​13.dll
 + 2008-06-26 03:18:34 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​18.dll
 + 2008-06-26 03:18:38 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​19.dll
 + 2008-06-26 03:18:38 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​1a.dll
 + 2008-06-26 03:18:40 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​1b.dll
 + 2008-06-26 03:18:42 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​1d.dll
 + 2008-06-26 03:18:43 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​20.dll
 + 2008-06-26 03:18:44 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​21.dll
 + 2008-06-26 03:18:44 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​22.dll
 + 2008-06-26 03:18:44 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​24.dll
 + 2008-06-26 03:18:45 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​26.dll
 + 2008-06-26 03:18:45 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​27.dll
 + 2008-06-26 03:18:46 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​2a.dll
 + 2008-06-26 03:18:46 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​39.dll
 + 2008-06-26 03:18:47 1,799,168 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​3e.dll
 + 2008-06-26 03:18:49 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​45.dll
 + 2008-06-26 03:18:51 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​46.dll
 + 2008-06-26 03:18:52 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​47.dll
 + 2008-06-26 03:18:53 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​49.dll
 + 2008-06-26 03:18:54 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​4a.dll
 + 2008-06-26 03:18:54 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​4b.dll
 + 2008-06-26 03:18:57 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​4c.dll
 + 2008-06-26 03:18:58 3,102,720 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData00​4e.dll
 + 2008-06-26 03:19:00 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData04​14.dll
 + 2008-06-26 03:19:01 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData04​16.dll
 + 2008-06-26 03:19:04 4,493,312 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData08​16.dll
 + 2008-06-26 03:19:04 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData08​1a.dll
 + 2008-06-26 03:19:05 1,963,520 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsData0c​1a.dll
 + 2008-06-26 00:30:04 11,722,752 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0001.dll
 + 2008-06-26 00:31:26 4,164,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0002.dll
 + 2008-06-26 00:30:49 1,452,544 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0003.dll
 + 2008-06-26 00:30:39 12,240,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0007.dll
 + 2008-06-26 00:30:36 2,644,480 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0009.dll
 + 2008-06-26 00:30:47 9,892,864 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns000a.dll
 + 2008-06-26 00:30:37 6,237,696 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns000c.dll
 + 2008-06-26 00:30:43 1,722,368 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns000d.dll
 + 2008-06-26 00:30:54 5,654,528 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns000f.dll
 + 2008-06-26 00:30:55 4,175,872 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0010.dll
 + 2008-06-26 00:30:45 2,466,816 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0011.dll
 + 2008-06-26 00:30:11 4,981,248 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0013.dll
 + 2008-06-26 00:31:06 3,331,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0018.dll
 + 2008-06-26 00:31:09 6,781,440 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0019.dll
 + 2008-06-26 00:30:50 6,014,976 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns001a.dll
 + 2008-06-26 00:31:46 6,585,856 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns001b.dll
 + 2008-06-26 00:31:23 6,346,240 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns001d.dll
 + 2008-06-26 00:31:44 1,236,992 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0020.dll
 + 2008-06-26 00:30:48 2,136,064 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0021.dll
 + 2008-06-26 00:31:40 5,499,904 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0022.dll
 + 2008-06-26 00:31:48 7,964,672 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0024.dll
 + 2008-06-26 00:31:35 5,791,232 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0026.dll
 + 2008-06-26 00:30:57 6,224,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0027.dll
 + 2008-06-26 00:31:34 4,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns002a.dll
 + 2008-06-26 00:30:53 1,782,272 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0039.dll
 + 2008-06-26 00:30:59 4,045,824 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns003e.dll
 + 2008-06-26 00:31:25 1,793,536 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0045.dll
 + 2008-06-26 00:31:04 1,808,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0046.dll
 + 2008-06-26 00:30:52 1,411,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0047.dll
 + 2008-06-26 00:31:32 1,558,016 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0049.dll
 + 2008-06-26 00:31:33 3,419,136 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns004a.dll
 + 2008-06-26 00:31:29 1,702,912 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns004b.dll
 + 2008-06-26 00:31:45 4,093,440 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns004c.dll
 + 2008-06-26 00:31:30 1,972,736 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns004e.dll
 + 2008-06-26 00:31:00 4,616,192 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0414.dll
 + 2008-06-26 00:31:03 5,090,816 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0416.dll
 + 2008-06-26 00:31:02 5,031,936 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0816.dll
 + 2008-06-26 00:31:22 7,042,560 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns081a.dll
 + 2008-06-26 00:31:16 6,917,120 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsLexico​ns0c1a.dll
 + 2008-06-26 00:30:01 5,071,872 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6000.20867_n​one_9c4456c346dd3a34\NlsModels​0011.dll
 + 2008-06-26 03:29:06 801,280 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NaturalLa​nguage6.dll
 + 2008-01-19 07:35:38 1,523,712 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​00.dll
 + 2008-01-19 07:35:39 2,599,936 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​01.dll
 + 2008-01-19 07:35:39 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​02.dll
 + 2008-01-19 07:35:40 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​03.dll
 + 2008-01-19 07:35:40 2,243,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​07.dll
 + 2008-01-19 07:35:42 4,875,776 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​09.dll
 + 2008-01-19 07:35:44 9,847,296 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​0a.dll
 + 2008-01-19 07:35:45 2,643,456 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​0c.dll
 + 2008-01-19 07:35:46 2,342,912 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​0d.dll
 + 2008-01-19 07:35:46 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​0f.dll
 + 2008-01-19 07:35:46 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​10.dll
 + 2008-01-19 07:35:46 2,657,280 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​11.dll
 + 2008-01-19 07:35:47 3,466,752 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​13.dll
 + 2008-01-19 07:35:47 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​18.dll
 + 2008-01-19 07:35:47 4,497,408 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​19.dll
 + 2008-01-19 07:35:48 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​1a.dll
 + 2008-01-19 07:35:48 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​1b.dll
 + 2008-01-19 07:35:49 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​1d.dll
 + 2008-01-19 07:35:49 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​20.dll
 + 2008-01-19 07:35:49 1,801,216 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​21.dll
 + 2008-01-19 07:35:49 1,801,216 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​22.dll
 + 2008-01-19 07:35:50 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​24.dll
 + 2008-01-19 07:35:50 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​26.dll
 + 2008-01-19 07:35:50 1,966,592 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​27.dll
 + 2008-01-19 07:35:50 1,801,216 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​2a.dll
 + 2008-01-19 07:35:51 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​39.dll
 + 2008-01-19 07:35:51 1,801,216 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​3e.dll
 + 2008-01-19 07:35:51 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​45.dll
 + 2008-01-19 07:35:52 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​46.dll
 + 2008-01-19 07:35:52 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​47.dll
 + 2008-01-19 07:35:53 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​49.dll
 + 2008-01-19 07:35:53 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​4a.dll
 + 2008-01-19 07:35:54 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​4b.dll
 + 2008-01-19 07:35:54 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​4c.dll
 + 2008-01-19 07:35:54 3,104,768 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData00​4e.dll
 + 2008-01-19 07:35:55 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData04​14.dll
 + 2008-01-19 07:35:56 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData04​16.dll
 + 2008-01-19 07:35:57 4,495,360 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData08​16.dll
 + 2008-01-19 07:35:57 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData08​1a.dll
 + 2008-01-19 07:35:57 1,965,056 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsData0c​1a.dll
 + 2006-11-02 08:21:55 11,722,752 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0001.dll
 + 2006-11-02 08:22:34 4,164,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0002.dll
 + 2006-11-02 08:22:13 1,452,544 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0003.dll
 + 2008-06-26 01:45:43 12,240,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0007.dll
 + 2008-06-26 01:45:55 2,644,480 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0009.dll
 + 2006-11-02 08:22:11 9,892,864 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns000a.dll
 + 2006-11-02 08:22:06 6,237,696 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns000c.dll
 + 2006-11-02 08:22:09 1,722,368 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns000d.dll
 + 2006-11-02 08:22:17 5,654,528 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns000f.dll
 + 2006-11-02 08:22:18 4,175,872 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0010.dll
 + 2006-11-02 08:22:10 2,466,816 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0011.dll
 + 2006-11-02 08:21:58 4,981,248 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0013.dll
 + 2006-11-02 08:22:25 3,331,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0018.dll
 + 2006-11-02 08:22:26 6,781,440 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0019.dll
 + 2006-11-02 08:22:14 6,014,976 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns001a.dll
 + 2006-11-02 08:22:47 6,585,856 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns001b.dll
 + 2006-11-02 08:22:31 6,346,240 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns001d.dll
 + 2006-11-02 08:22:45 1,236,992 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0020.dll
 + 2006-11-02 08:22:12 2,136,064 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0021.dll
 + 2006-11-02 08:22:44 5,499,904 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0022.dll
 + 2006-11-02 08:22:49 7,964,672 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0024.dll
 + 2006-11-02 08:22:42 5,791,232 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0026.dll
 + 2006-11-02 08:22:19 6,224,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0027.dll
 + 2006-11-02 08:22:41 4,096 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns002a.dll
 + 2006-11-02 08:22:16 1,782,272 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0039.dll
 + 2006-11-02 08:22:20 4,045,824 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns003e.dll
 + 2006-11-02 08:22:33 1,793,536 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0045.dll
 + 2006-11-02 08:22:25 1,808,896 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad364e35_6.0.6001.18098_n​one_9d81873e2afd9b5e\NlsLexico​ns0046.dll
 + 2006-11-02 08:22:15 1,411,072 ----a-w C:\Windows\winsxs\x86_microsof​t-windows-naturallanguage6_31b​f3856ad36

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 15/07/2008 à 21:21:15  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 22:17, on 2008-07-15
 Platform: Windows Vista  (WinNT 6.00.1904)
 MSIE: Internet Explorer v7.00 (7.00.6000.16681)
 Boot mode: Normal

 Running processes:
 C:\Windows\system32\Dwm.exe
 C:\Windows\Explorer.EXE
 C:\Windows\system32\taskeng.ex​e
 C:\Windows\RtHDVCpl.exe
 C:\Program Files\Common Files\Symantec Shared\ccApp.exe
 C:\Acer\Empowering Technology\SysMonitor.exe
 C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 C:\Program Files\Windows Sidebar\sidebar.exe
 C:\Windows\ehome\ehtray.exe
 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
 C:\Program Files\DNA\btdna.exe
 C:\Program Files\Windows Media Player\wmpnscfg.exe
 C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 C:\Windows\ehome\ehmsas.exe
 C:\Acer\Empowering Technology\ACER.EMPOWERING.FRA​MEWORK.SUPERVISOR.EXE
 C:\Acer\Empowering Technology\eRecovery\ERAGENT.E​XE
 C:\Program Files\Internet Explorer\iexplore.exe
 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
 C:\Windows\system32\DllHost.ex​e
 C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://lo.st/FATOUMATA.COM
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = *.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me =
 R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695E​CA05670} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7​D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
 O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A5​3123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\Np​pBho.dll
 O2 - BHO: Windows Live OneCare Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3​d2976ac} - C:\Program Files\Windows Live\Contrôle parental\fssbho.dll
 O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723​696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.d​ll (file missing)
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9​C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UI​BHO.dll
 O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB​0476E29} - C:\Windows\system32\eDStoolbar​.dll
 O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
 O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
 O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
 O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
 O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
 O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
 O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe AcRdB7_1_0
 O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\RunOnce: []  (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-20\..\RunOnce: []  (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'SYSTEM')
 O4 - HKUS\S-1-5-18\..\RunOnce: []  (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'Default user')
 O4 - HKUS\.DEFAULT\..\RunOnce: []  (User 'Default user')
 O4 - Global Startup: Empowering Technology Launcher.lnk = ?
 O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Off​ice12\EXCEL.EXE/3000
 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5​71A8263} - C:\PROGRA~1\MICROS~2\Office12\​REFIEBAR.DLL
 O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
 O13 - Gopher Prefix:
 O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw [...] ontrol.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O22 - SharedTaskScheduler: Deskscapes - {EC654325-1273-C2A9-2B7C-45D29​BCE68FB} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\deskscapes.dll
 O22 - SharedTaskScheduler: Stardock Vista ControlPanel Extension - {EC654325-1273-C2A9-2B7C-45D29​BCE68FD} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\DesktopControlPanel.d​ll
 O22 - SharedTaskScheduler: StardockDreamController - {EC654325-1273-C2A9-2B7C-45D29​BCE68FF} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\DreamControl.dll
 O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​exe
 O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemChe​ck.exe
 O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
 O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
 O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSSe​rvice.exe
 O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecovery​Service.exe
 O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
 O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
 O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\​LUCOMS~1.EXE
 O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61​-B58F-2F227FCA9A08}\PIFSvc.exe
 O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe
 O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
 O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
 O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

 --
 End of file - 10951 bytes

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 15/07/2008 à 21:31:48  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonsoir,

 1/ relance hijackthis et coche les cases devant ces lignes (si présentes) :

 



R3 - URLSearchHook: (no name) - {0579B4B6-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: Ask Search Assistant BHO - {0579B4B1-0293-4d73-B02D-5EBB0​BA0F0A2} - C:\Program Files\AskSBar\SrchAstt\1.bin\A​2SRCHAS.DLL
 O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723​696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.d​ll (file missing)




 Puis ferme toutes les autres fenêtres autres que hijackthis et clic sur "fix checked"

 2/ ferme hijackthis

 3/ Passe un coup de MalwareBytes (scan complet) et nettoie tout ce qu'il trouve
 Aide : http://www.site-naheulbeuk.com/malwarebytes.php
 Post moi le rapport généré à la fin dans ta prochaine réponse :)

 bonne soirée :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 15/07/2008 à 22:41:03  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
re-bonsoir Naheulbeuk voila le rapport Malwarebytes :

 Malwarebytes' Anti-Malware 1.20
 Version de la base de données: 940
 Windows 6.0.6000

 23:28:18 2008-07-15
 mbam-log-7-15-2008 (23-28-18).txt

 Type de recherche: Examen complet (C:\|D:\|)
 Eléments examinés: 131407
 Temps écoulé: 34 minute(s), 10 second(s)

 Processus mémoire infecté(s): 0
 Module(s) mémoire infecté(s): 0
 Clé(s) du Registre infectée(s): 0
 Valeur(s) du Registre infectée(s): 0
 Elément(s) de données du Registre infecté(s): 0
 Dossier(s) infecté(s): 0
 Fichier(s) infecté(s): 0

 Processus mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Module(s) mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Clé(s) du Registre infectée(s):
 (Aucun élément nuisible détecté)

 Valeur(s) du Registre infectée(s):
 (Aucun élément nuisible détecté)

 Elément(s) de données du Registre infecté(s):
 (Aucun élément nuisible détecté)

 Dossier(s) infecté(s):
 (Aucun élément nuisible détecté)

 Fichier(s) infecté(s):
 (Aucun élément nuisible détecté)

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 16/07/2008 à 09:35:10  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonjour, un dernier scan et après je te lache :p

 Fais un scan BitDefender en ligne (avec Internet Explorer pas avec Firefox !)
 (clique à gauche sur scan online).
 et post moi le rapport de ce scan ici une fois terminé !

 Guide d'utilisation de Bitdefender en ligne (merci Bruce Lee) : http://cybersecurite.xooit.com [...] fender.htm

 :hello:


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 16/07/2008 à 13:02:41  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonjour Naheulbeuk ,

 BitDefender Online Scanner
 
 
 
 Scan report generated at: Wed, Jul 16, 2008 - 13:08:02
 
 
 
 
 
 Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;
 
 
 
 
 
 
 
 Statistics
 
 Time
 01:01:45
 
 Files
 192357
 
 Folders
 17998
 
 Boot Sectors
 4
 
 Archives
 2293
 
 Packed Files
 12622
 
 
 
 
 Results
 
 Identified Viruses
 12
 
 Infected Files
 13
 
 Suspect Files
 0
 
 Warnings
 0
 
 Disinfected
 0
 
 Deleted Files
 13
 
 
 
 
 Engines Info
 
 Virus Definitions
 1381418
 
 Engine build
 AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
 
 Scan plugins
 16
 
 Archive plugins
 42
 
 Unpack plugins
 7
 
 E-mail plugins
 6
 
 System plugins
 5
 
 
 
 
 Scan Settings
 
 First Action
 Disinfect
 
 Second Action
 Delete
 
 Heuristics
 Yes
 
 Enable Warnings
 Yes
 
 Scanned Extensions
 *;
 
 Exclude Extensions
 
 
 Scan Emails
 Yes
 
 Scan Archives
 Yes
 
 Scan Packed
 Yes
 
 Scan Files
 Yes
 
 Scan Boot
 Yes
 
 
 
 
  Scanned File
  Status
 
 C:\Program Files\Trend Micro\HijackThis\backups\backu​p-20080715-224314-181.dll
 Detected with: Adware.MyWebSearch.DW
 
 C:\Program Files\Trend Micro\HijackThis\backups\backu​p-20080715-224314-181.dll
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\bk4.exe
 Infected with: Trojan.Peed.JOP
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\bk4.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\downloader-fwb.exe
 Infected with: Trojan.Crypt.Delf.R
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\downloader-fwb.exe
 Disinfection failed
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\downloader-fwb.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\etihwknarf.exe
 Infected with: Trojan.Generic.370470
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\etihwknarf.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\mmmarsn.exe
 Infected with: Dropped:Trojan.Downloader.VB.V​PG
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\mmmarsn.exe
 Disinfection failed
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\mmmarsn.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\Password Creator-6452.exe
 Infected with: Trojan.Downloader.JKFJ
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\Password Creator-6452.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\syswcc32.exe
 Infected with: Trojan.Generic.304014
 
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\syswcc32.exe
 Deleted
 
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\dtsc\25293.ex​e
 Infected with: Trojan.Generic.370420
 
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\dtsc\25293.ex​e
 Deleted
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar=>C-Murder-Screamin_-4_-Ven​geance-2008-RAGEMP3\C-Murder-S​creamin_4_Vengeance-2008-RAGEM​P3\Password_Creator - Copy.exe
 Infected with: Trojan.Spy.Small.GU
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar=>C-Murder-Screamin_-4_-Ven​geance-2008-RAGEMP3\C-Murder-S​creamin_4_Vengeance-2008-RAGEM​P3\Password_Creator - Copy.exe
 Deleted
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar
 Update failed
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar=>C-Murder-Screamin_-4_-Ven​geance-2008-RAGEMP3\C-Murder-S​creamin_4_Vengeance-2008-RAGEM​P3\Password_Creator.exe
 Infected with: Trojan.Spy.Small.GU
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar=>C-Murder-Screamin_-4_-Ven​geance-2008-RAGEMP3\C-Murder-S​creamin_4_Vengeance-2008-RAGEM​P3\Password_Creator.exe
 Deleted
 
 C:\Users\fatlaflamme\Documents​\Downloads\C-Murder-Screamin_-​4_-Vengeance-__2008__-RAGEMP3.​rar
 Update failed
 
 C:\Users\fatlaflamme\Music\MON SON\Sons Fatoumata Bintou\autorun.inf
 Infected with: Trojan.Autorun.EU
 
 C:\Users\fatlaflamme\Music\MON SON\Sons Fatoumata Bintou\autorun.inf
 Deleted
 
 C:\Users\fatlaflamme\Nouveau dossier\Spyware-Secure\Spyware​-Secure_trial.exe
 Detected with: Application.SpywareSecure.A
 
 C:\Users\fatlaflamme\Nouveau dossier\Spyware-Secure\Spyware​-Secure_trial.exe
 Deleted
 
 C:\Windows\System32\pac.txt
 Infected with: Trojan.Downloader.VB.VPG
 
 C:\Windows\System32\pac.txt
 Deleted
 
 
 
 
 
 
 
 
 
 
 

 

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 17/07/2008 à 13:51:19  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonjour, tu n'as plus de souci ? :)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 18/07/2008 à 23:03:30  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonsoir naheulbeuk,


 j'ai passé un coup de malwarebytes et j'ai vu que mon PC étais infecté voici le rapport:

 Malwarebytes' Anti-Malware 1.20
 Version de la base de données: 940
 Windows 6.0.6000

 23:34:52 2008-07-18
 mbam-log-7-18-2008 (23-34-47).txt

 Type de recherche: Examen complet (C:\|D:\|)
 Eléments examinés: 136408
 Temps écoulé: 49 minute(s), 6 second(s)

 Processus mémoire infecté(s): 0
 Module(s) mémoire infecté(s): 3
 Clé(s) du Registre infectée(s): 6
 Valeur(s) du Registre infectée(s): 4
 Elément(s) de données du Registre infecté(s): 2
 Dossier(s) infecté(s): 1
 Fichier(s) infecté(s): 16

 Processus mémoire infecté(s):
 (Aucun élément nuisible détecté)

 Module(s) mémoire infecté(s):
 C:\Windows\System32\khfCVopN.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\phhbhvis.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\opnlICtR.d​ll (Trojan.FakeAlert) -> No action taken.

 Clé(s) du Registre infectée(s):
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{75ef17ef-09af-4259-83​11-350657af982f} (Trojan.Vundo) -> No action taken.
 HKEY_CLASSES_ROOT\CLSID\{75ef1​7ef-09af-4259-8311-350657af982​f} (Trojan.Vundo) -> No action taken.
 HKEY_CLASSES_ROOT\CLSID\{be7e4​ce1-8cba-44a6-956f-462a667d328​6} (Trojan.FakeAlert) -> No action taken.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\Browser Helper Objects\{be7e4ce1-8cba-44a6-95​6f-462a667d3286} (Trojan.FakeAlert) -> No action taken.
 HKEY_CURRENT_USER\SOFTWARE\Mic​rosoft\rdfa (Trojan.Vundo) -> No action taken.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\MS Juan (Malware.Trace) -> No action taken.

 Valeur(s) du Registre infectée(s):
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Run\e4d7fbc0 (Trojan.Vundo) -> No action taken.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Explorer\ShellExecuteHooks\{b​e7e4ce1-8cba-44a6-956f-462a667​d3286} (Trojan.FakeAlert) -> No action taken.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Run\msserver (Trojan.FakeAlert) -> No action taken.
 HKEY_LOCAL_MACHINE\SOFTWARE\Mi​crosoft\Windows\CurrentVersion​\Run\bme7e4c85c (Trojan.Agent) -> No action taken.

 Elément(s) de données du Registre infecté(s):
 HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\LSA\Noti​fication Packages (Trojan.Vundo) -> Data: c:\windows\system32\khfcvopn -> No action taken.
 HKEY_LOCAL_MACHINE\SYSTEM\Curr​entControlSet\Control\LSA\Auth​entication Packages (Trojan.Vundo) -> Data: c:\windows\system32\khfcvopn  -> No action taken.

 Dossier(s) infecté(s):
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\dtsc (Trojan.Agent) -> No action taken.

 Fichier(s) infecté(s):
 C:\Windows\System32\khfCVopN.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\NpoVCfhk.i​ni (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\NpoVCfhk.i​ni2 (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\luuvgusd.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\dsugvuul.i​ni (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\neakqetd.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\dteqkaen.i​ni (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\phhbhvis.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\sivhbhhp.i​ni (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\pmnkIXOf.d​ll (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\fOXIknmp.i​ni (Trojan.Vundo) -> No action taken.
 C:\Windows\System32\opnlICtR.d​ll (Trojan.FakeAlert) -> No action taken.
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\tmp0000a8eb (Trojan.FakeAlert) -> No action taken.
 C:\Users\fatlaflamme\AppData\L​ocal\Temp\tmp000246cf (Trojan.FakeAlert) -> No action taken.
 C:\Users\fatlaflamme\AppData\R​oaming\Microsoft\dtsc\s (Trojan.Agent) -> No action taken.
 C:\Windows\System32\jmcuwunu.d​ll (Trojan.Agent) -> No action taken.

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 19/07/2008 à 18:37:09  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonsoir, tu as bien tout supprimé ? sinon fais le !!!

 Télécharge ComboFix (créé par sUBs) sur ton Bureau

 Démarre en mode sans échec : http://forum.telecharger.01net [...] ges-1.html


 
  • Double clique combofix.exe.
  • Tape sur la touche 1 pour démarrer le scan puis laisse toi guider.
  • ComboFix redémarrera ton PC
  • Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse,et nouveau rapport hijackthis

 NOTE : Le rapport se trouve également ici : C:\Combofix.txt

 bonne soirée ;)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 24/07/2008 à 16:15:17  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ComboFix 08-07-23.5 - fatlaflamme 2008-07-24 16:08:33.5 - NTFSx86 MINIMAL
 Microsoft® Windows Vista™ Édition Familiale Premium   6.0.6001.1.1252.1.1036.18.442 [GMT 2:00]
 Endroit: C:\Users\fatlaflamme\Desktop\C​omboFix.exe
 .

 ((((((((((((((((((((((((((((((​((((((   Autres suppressions   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .

 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr0.dat
 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr1.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.exe
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_nav.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_navps.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga.dat
 C:\Users\fatlaflamme\AppData\L​ocal\oemamga.exe
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_nav.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_navps.dat
 C:\Windows\system32\dteqkaen.i​ni
 C:\Windows\system32\jmcuwunu.d​ll
 C:\Windows\system32\MSINET.oca
 C:\Windows\system32\orqeanhr.d​ll
 C:\Windows\system32\phhbhvis.d​ll

 ----- BITS: Possible sites infect‚s -----

 http://premium.virginmega.fr
 .
 (((((((((((((((((((((((((((((   Fichiers cr‚‚s 2008-06-24 to 2008-07-24  ))))))))))))))))))))))))))))))​))))))
 .

 Pas de nouveau fichier cr‚‚ dans cet espace de temps

 .
 ((((((((((((((((((((((((((((((​((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .
 2008-07-24 14:04 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DNA
 2008-07-24 13:58 --------- d-----w C:\PROGRA~2\Symantec
 2008-07-23 22:15 174 --sha-w C:\Program Files\desktop.ini
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Sidebar
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Photo Gallery
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Mail
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Journal
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Defender
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Collaboration
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Calendar
 2008-07-23 13:03 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\BitTorrent
 2008-07-18 11:44 --------- d-----w C:\Program Files\BoontyGames
 2008-07-18 11:31 --------- d-----w C:\Program Files\Bonjour
 2008-07-14 17:52 --------- d-----w C:\PROGRA~2\Stardock
 2008-07-14 17:51 --------- d-----w C:\Program Files\Stardock
 2008-07-14 17:44 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Hamachi
 2008-07-14 17:39 25,280 ----a-w C:\Windows\system32\drivers\ha​machi.sys
 2008-07-13 23:49 --------- d-----w C:\Program Files\metronimo
 2008-07-13 17:42 --------- d-----w C:\Program Files\Gcompris
 2008-07-13 17:34 89,444,689 ----a-w C:\Program Files\gcompris-8.3.6.exe
 2008-07-13 16:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\GrabIt
 2008-07-13 16:05 --------- d-----w C:\Program Files\Navilog1
 2008-07-13 15:38 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Reasonable Software House Ltd
 2008-07-13 11:43 --------- d--h--r C:\Users\fatlaflamme\AppData\R​oaming\SecuROM
 2008-07-12 20:05 --------- d-----w C:\Program Files\Common Files\BOONTY Shared
 2008-07-12 20:05 --------- d-----w C:\PROGRA~2\BOONTY
 2008-07-11 17:04 --------- d-----w C:\Program Files\Trend Micro
 2008-07-11 16:43 --------- d-----w C:\PROGRA~2\Spybot - Search & Destroy
 2008-07-11 14:44 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
 2008-07-11 14:42 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Malwarebytes
 2008-07-11 14:42 --------- d-----w C:\PROGRA~2\Malwarebytes
 2008-07-07 15:35 34,296 ----a-w C:\Windows\system32\drivers\mb​amcatchme.sys
 2008-07-07 15:35 17,144 ----a-w C:\Windows\system32\drivers\mb​am.sys
 2008-07-05 08:53 --------- d-----w C:\Program Files\Apple Software Update
 2008-06-26 18:53 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Azureus
 2008-06-26 15:40 --------- d-----w C:\Program Files\AskSBar
 2008-06-26 14:41 --------- d-----w C:\Program Files\DNA
 2008-06-26 14:41 --------- d-----w C:\Program Files\BitTorrent
 2008-06-26 14:20 --------- d-----w C:\PROGRA~2\Azureus
 2008-06-26 14:06 --------- d-----w C:\Program Files\Sun
 2008-06-22 16:50 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\EoRezo
 2008-06-22 16:50 --------- d-----w C:\Program Files\EoRezo
 2008-06-22 16:43 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\ItsLabel
 2008-06-21 19:33 --------- d-----w C:\Program Files\DivX
 2008-06-21 19:33 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
 2008-06-21 19:30 20,724,776 ----a-w C:\Users\fatlaflamme\DivXInsta​ller.exe
 2008-06-21 19:13 --------- d-----w C:\PROGRA~2\DVD X Studios
 2008-06-17 08:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
 2008-06-17 07:55 --------- d-----w C:\Program Files\Conduit
 2008-06-17 07:53 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
 2008-06-15 23:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DivX
 2008-06-08 16:34 --------- d-----w C:\PROGRA~2\Microsoft Help
 2008-06-07 19:57 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Apple Computer
 2008-06-07 19:57 --------- d-----w C:\Program Files\iTunes
 2008-06-07 19:57 --------- d-----w C:\Program Files\iPod
 2008-06-07 19:56 --------- d-----w C:\PROGRA~2\Apple Computer
 2008-06-07 19:54 --------- d-----w C:\Program Files\QuickTime
 2008-06-07 19:51 --------- d-----w C:\Program Files\Common Files\Apple
 2008-06-07 19:51 --------- d-----w C:\PROGRA~2\Apple
 2008-06-07 19:38 --------- d-----w C:\PROGRA~2\eMule
 2008-06-01 11:58 --------- d-----w C:\PROGRA~2\WLInstaller
 2008-05-31 20:05 --------- d-----w C:\PROGRA~2\Lavasoft
 2008-05-31 00:10 --------- d-----w C:\Program Files\Norton Internet Security
 2008-05-30 23:47 805 ----a-w C:\Windows\system32\drivers\SY​MEVENT.INF
 2008-05-30 23:47 123,952 ----a-w C:\Windows\system32\drivers\SY​MEVENT.SYS
 2008-05-30 23:47 10,671 ----a-w C:\Windows\system32\drivers\SY​MEVENT.CAT
 2008-05-30 23:47 --------- d-----w C:\Program Files\Symantec
 2008-05-30 23:47 --------- d-----w C:\Program Files\Common Files\Symantec Shared
 2008-05-30 00:47 --------- d-----w C:\PROGRA~2\CheckPoint
 2008-05-27 12:59 --------- d-----w C:\Program Files\Common Files\Adobe
 .

 (((((((((((((((((((((((((((((   snapshot_2008-07-15_21.49.44.6​6   ))))))))))))))))))))))))))))))​)))))))))))
 .
 - 2008-03-08 04:30:03 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 + 2008-03-08 04:19:20 2,153,984 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 - 2008-03-08 04:30:03 537,600 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 + 2008-03-08 04:19:20 540,672 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 - 2006-11-02 09:46:02 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 + 2008-01-19 07:33:41 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 - 2008-03-08 00:22:51 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 + 2008-03-08 01:58:43 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 - 2008-03-08 04:30:03 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 + 2008-03-08 04:19:21 458,752 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 - 2008-03-08 04:30:03 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 + 2008-03-08 04:19:21 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 - 2006-11-02 09:46:02 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 + 2008-01-19 07:33:43 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 - 2008-04-25 04:23:06 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 + 2008-01-19 07:34:28 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 - 2006-11-02 12:35:32 143,360 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 + 2008-01-19 07:38:12 144,384 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 - 2006-10-20 01:13:56 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 + 2008-01-05 11:26:08 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 - 2006-10-20 01:14:03 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 + 2008-01-05 11:26:17 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 - 2006-11-02 12:35:34 77,824 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 + 2008-01-19 07:38:31 78,336 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 - 2008-04-23 04:28:09 136,704 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 + 2008-04-23 04:44:47 140,288 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 - 2006-11-02 12:35:33 105,472 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 + 2008-01-19 07:38:32 106,496 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 - 2006-11-02 12:35:24 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 + 2008-01-19 07:38:34 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 - 2006-11-02 12:36:03 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 + 2008-01-05 11:21:39 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 - 2006-10-20 01:14:15 4,366,336 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 + 2008-01-05 11:26:32 4,444,160 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 - 2006-11-02 09:47:03 39,936 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 + 2008-01-19 07:38:44 46,080 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 - 2006-11-02 09:47:03 98,816 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 + 2008-01-19 07:38:45 103,936 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 - 2006-11-02 12:36:01 3,915,264 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 + 2008-01-05 11:21:53 4,174,336 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 - 2006-10-20 01:14:47 482,304 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 + 2008-01-05 11:26:54 483,840 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 - 2006-10-20 01:14:47 2,894,336 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 + 2008-01-05 11:26:54 3,036,160 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 - 2006-10-20 01:14:51 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 + 2008-01-05 11:26:55 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 - 2006-11-02 06:34:22 114,176 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 + 2008-01-19 03:22:55 113,664 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 - 2006-11-02 12:36:01 344,064 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 + 2008-01-05 11:21:55 346,624 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 - 2006-10-20 01:14:53 260,096 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 + 2008-01-05 11:26:59 261,120 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 - 2008-05-21 05:50:17 5,156,864 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 + 2008-01-05 11:26:59 5,431,296 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 - 2006-10-20 01:13:37 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 + 2008-01-05 11:25:52 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 - 2006-11-02 15:46:16 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 + 2008-01-05 11:26:11 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 - 2006-10-20 01:13:41 503,808 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 + 2008-01-05 11:25:59 507,904 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 - 2006-11-02 12:36:03 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 + 2008-01-05 11:21:39 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 - 2006-10-20 01:13:56 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 + 2008-01-05 11:26:08 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 - 2006-10-20 01:13:57 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 + 2008-01-05 11:26:11 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 - 2008-04-23 04:27:53 864,256 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 + 2008-01-19 07:38:16 827,392 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 - 2006-11-02 12:35:28 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 + 2008-01-19 07:38:16 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 - 2008-04-23 04:27:55 135,168 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 + 2008-01-19 07:38:17 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 - 2008-04-23 04:27:56 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 + 2006-11-02 12:35:28 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 - 2006-11-02 12:35:32 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 + 2008-01-19 07:38:18 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 - 2006-11-02 12:35:30 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 + 2008-01-19 07:38:18 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 - 2006-11-02 12:35:32 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 + 2008-01-19 07:38:19 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 - 2006-11-02 12:35:34 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 + 2008-01-19 07:38:19 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 - 2006-11-02 12:35:29 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 + 2008-01-19 07:38:19 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 - 2008-04-23 04:27:59 4,374,528 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 + 2008-04-23 04:44:14 4,046,848 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 - 2006-11-02 15:46:10 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 + 2008-01-19 07:53:44 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 - 2006-11-02 09:46:54 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 + 2008-01-19 07:38:21 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 - 2006-10-20 01:14:02 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 + 2008-01-05 11:26:12 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 - 2006-10-20 01:14:02 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 + 2008-01-05 11:26:12 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 - 2006-10-20 01:14:02 5,632 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 + 2008-01-05 11:26:13 6,656 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 - 2006-11-02 12:35:29 200,704 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 + 2008-01-19 07:38:31 176,128 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 - 2006-11-02 15:46:16 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 + 2008-01-05 11:26:11 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 - 2006-10-20 01:14:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 + 2008-01-05 11:26:17 348,160 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 - 2006-10-20 01:14:03 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 + 2008-01-05 11:26:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 - 2006-11-02 15:46:15 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 + 2008-01-05 11:26:11 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 - 2006-10-20 01:14:03 647,168 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 + 2008-01-05 11:26:17 655,360 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 - 2006-11-02 15:46:12 10,240 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 + 2008-01-05 11:26:11 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 - 2006-10-20 01:14:04 73,728 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 + 2008-01-05 11:26:17 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 + 2008-01-19 07:53:49 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 - 2006-11-02 15:46:13 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 + 2008-01-05 11:26:11 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 - 2006-10-20 01:14:04 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 + 2008-01-05 11:26:19 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 + 2008-01-19 07:53:50 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 - 2006-11-02 09:47:01 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 + 2008-01-19 07:38:35 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 - 2008-04-23 04:28:14 1,196,032 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 + 2008-01-19 07:38:36 1,241,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 - 2006-11-02 12:35:33 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 + 2008-01-19 07:38:36 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 - 2008-04-23 04:28:14 2,342,912 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 + 2008-04-23 04:45:00 1,957,888 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 - 2008-04-23 04:28:13 217,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 + 2008-01-19 07:38:35 204,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 - 2006-11-02 15:46:16 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 + 2008-01-05 11:26:41 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 - 2006-11-02 12:36:03 352,256 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 + 2008-01-05 11:21:39 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 - 2006-11-02 15:46:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 + 2008-01-05 11:26:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 - 2006-10-20 01:14:05 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 + 2008-01-05 11:26:19 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 - 2006-11-02 15:46:09 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 + 2008-01-05 11:26:17 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 - 2006-10-20 01:14:05 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 + 2008-01-05 11:26:23 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 + 2008-01-05 11:26:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 - 2006-10-20 01:14:05 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 + 2008-01-05 11:26:23 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 - 2006-10-20 01:14:05 667,648 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 + 2008-01-05 11:26:23 671,744 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 - 2006-10-20 01:14:05 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 + 2008-01-05 11:26:24 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 - 2006-10-20 01:14:05 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 + 2008-01-05 11:26:23 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 - 2006-11-02 15:46:16 1,400,832 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 + 2008-01-19 07:53:52 1,515,520 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 - 2006-11-02 09:47:03 3,100,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 + 2008-01-19 07:38:41 3,371,008 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 - 2006-11-02 09:47:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 + 2008-01-19 07:38:41 417,792 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 - 2006-11-02 15:46:13 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 + 2008-01-05 11:26:12 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 - 2006-11-02 09:47:03 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 + 2008-01-19 07:38:45 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 - 2006-11-02 15:46:15 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 + 2008-01-19 07:53:54 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 - 2006-11-02 09:47:04 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 + 2008-01-19 07:38:45 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 - 2006-11-02 12:36:00 593,920 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 + 2008-01-05 11:21:52 602,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 - 2006-11-02 12:36:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 + 2008-01-05 11:21:52 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 - 2006-11-02 12:36:01 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 + 2008-01-05 11:21:53 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 - 2006-11-02 12:36:01 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 + 2008-01-05 11:21:53 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 - 2006-11-02 12:36:01 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 + 2008-01-05 11:21:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 - 2006-11-02 12:36:01 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 + 2008-01-05 11:21:53 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 - 2006-11-02 12:36:01 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 + 2008-01-05 11:21:54 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 - 2006-11-02 12:36:01 4,972,544 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 + 2008-01-05 11:21:53 5,210,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 - 2006-11-02 12:36:00 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 + 2008-01-05 11:21:55 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 - 2006-11-02 12:36:00 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 + 2008-01-05 11:21:55 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 - 2006-11-02 12:36:03 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 + 2008-01-05 11:21:39 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 - 2006-11-02 12:36:03 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 + 2008-01-05 11:21:39 102,400 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 - 2006-11-02 12:36:02 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 + 2008-01-05 11:21:39 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 - 2006-11-02 15:46:15 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 + 2008-01-05 11:26:12 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 - 2006-10-20 01:14:46 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 + 2008-01-05 11:26:54 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 - 2006-11-02 15:46:15 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 + 2008-01-05 11:26:12 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 - 2006-10-20 01:14:46 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 + 2008-01-05 11:26:54 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 - 2006-11-02 15:46:10 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 + 2008-01-05 11:26:12 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 - 2006-10-20 01:14:46 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 + 2008-01-05 11:26:54 425,984 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 - 2006-11-02 15:46:16 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 + 2008-01-05 11:26:12 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 - 2006-11-02 15:46:11 335,872 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 + 2008-01-05 11:26:13 344,064 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 - 2006-11-02 15:46:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 + 2008-01-05 11:26:13 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 - 2006-10-20 01:14:48 716,800 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 + 2008-01-05 11:26:55 741,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 - 2006-11-02 15:46:16 385,024 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 + 2008-01-05 11:26:14 389,120 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 - 2006-10-20 01:14:49 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 + 2008-01-05 11:26:55 933,888 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 - 2006-11-02 15:46:09 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 + 2008-01-05 11:26:14 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 - 2006-10-20 01:14:49 5,050,368 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 + 2008-01-05 11:26:55 5,070,848 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 - 2006-11-02 15:46:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 + 2008-01-05 11:26:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 - 2006-10-20 01:14:50 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 + 2008-01-05 11:26:55 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 - 2006-11-02 15:46:18 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 + 2008-01-05 11:26:16 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 - 2006-10-20 01:14:50 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 + 2008-01-05 11:26:55 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 - 2006-11-02 15:46:10 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 + 2008-01-05 11:26:16 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 - 2006-10-20 01:14:51 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 + 2008-01-05 11:26:55 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 - 2006-11-02 15:46:13 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 + 2008-01-05 11:26:16 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 - 2006-10-20 01:14:51 704,512 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 + 2008-01-05 11:26:55 630,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 - 2006-11-02 15:46:11 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 - 2006-11-02 15:46:10 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 + 2008-01-05 11:26:37 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 - 2006-11-02 15:46:09 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 + 2008-01-05 11:26:39 57,344 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 - 2006-11-02 12:36:02 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 + 2008-01-05 11:21:38 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 - 2006-11-02 12:36:02 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 + 2008-01-05 11:21:37 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 - 2006-11-02 12:36:02 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 + 2008-01-05 11:21:38 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 - 2006-11-02 15:46:09 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 + 2008-01-05 11:26:17 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 - 2006-10-20 01:14:52 368,640 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 + 2008-01-05 11:26:58 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 + 2008-01-05 11:26:17 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 - 2006-10-20 01:14:52 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 - 2006-11-02 15:46:11 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 + 2008-01-05 11:26:17 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 - 2006-11-02 15:46:08 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 - 2006-10-20 01:14:53 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 + 2008-01-05 11:26:58 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 - 2006-11-02 15:46:13 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 + 2008-01-05 11:26:17 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 - 2006-10-20 01:14:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 + 2008-01-05 11:26:58 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 - 2006-11-02 15:46:13 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 + 2008-01-05 11:26:41 98,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 - 2006-11-02 12:36:03 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 + 2008-01-05 11:21:38 929,792 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 + 2008-01-05 11:26:17 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 - 2006-10-20 01:14:53 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 - 2006-11-02 12:36:02 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 + 2008-01-05 11:21:40 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 - 2006-11-02 15:46:14 475,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 + 2008-01-05 11:26:41 499,712 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 - 2006-11-02 12:36:03 16,384 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 + 2008-01-05 11:21:40 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 - 2006-11-02 12:36:03 5,672,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 + 2008-01-05 11:21:38 5,971,968 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 + 2008-01-05 11:26:17 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 - 2006-10-20 01:14:53 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 + 2008-01-05 11:26:58 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 - 2006-11-02 12:36:01 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 + 2008-01-05 11:21:55 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 - 2006-11-02 15:46:11 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 + 2008-01-05 11:26:17 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 - 2006-11-02 15:46:09 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 - 2006-10-20 01:14:54 835,584 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 + 2008-01-05 11:26:59 884,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 - 2006-10-20 01:14:55 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 + 2008-01-05 11:26:59 90,112 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 - 2008-05-21 05:50:18 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 + 2008-01-05 11:26:17 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 - 2006-11-02 15:46:16 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 - 2006-10-20 01:14:55 823,296 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 + 2008-01-05 11:27:00 839,680 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 - 2006-11-02 15:46:16 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 + 2008-01-05 11:26:17 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 - 2006-10-20 01:14:56 5,414,912 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 + 2008-01-05 11:27:02 5,013,504 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 - 2006-11-02 15:46:09 191,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 + 2008-01-05 11:26:54 193,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 - 2006-11-02 12:36:00 1,108,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 + 2008-01-05 11:22:14 1,152,040 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 - 2006-11-02 15:46:15 318,288 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 + 2008-01-05 11:26:54 320,576 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 - 2006-11-02 12:36:00 1,641,272 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 + 2008-01-05 11:22:15 1,635,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 - 2006-11-02 15:46:12 43,840 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 + 2008-01-05 11:26:54 46,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 - 2006-11-02 12:36:00 588,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 + 2008-01-05 11:22:15 578,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 - 2006-11-02 15:46:09 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 + 2008-01-05 11:26:17 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 - 2006-10-20 01:14:58 2,039,808 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 + 2008-01-05 11:27:03 2,068,480 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 - 2006-10-20 01:14:51 3,035,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 + 2008-01-05 11:26:55 3,076,096 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 - 2006-11-02 15:46:16 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 + 2008-01-19 07:54:01 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 - 2006-11-02 09:47:22 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 + 2008-01-19 07:39:26 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 - 2006-11-02 12:36:01 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 + 2008-01-05 11:21:56 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 - 2006-11-02 12:36:01 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 + 2008-01-05 11:22:00 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 - 2006-11-02 12:36:01 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 + 2008-01-05 11:22:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 - 2006-11-02 12:36:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 + 2008-01-05 11:22:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 - 2006-11-02 12:36:00 1,167,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 + 2008-01-05 11:22:00 1,204,224 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 - 2006-11-02 12:36:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 + 2008-01-05 11:22:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 - 2006-11-02 12:36:03 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-01-05 11:21:40 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-07-23 22:21:26 27,136 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Accessibility​\e2170385d6492ce6539124c5a3b36​1a8\Accessibility.ni.dll
 + 2008-07-23 22:27:37 884,736 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\AspNetMMCExt\​b3a5c81e91bf9b1e63697e53a41ac0​ed\AspNetMMCExt.ni.dll
 + 2008-07-23 22:25:00 425,984 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\BDATunePIA\7b​38b32ba60b3eb9195c4e1fcc2c3b9d​\BDATunePIA.ni.dll
 + 2008-07-23 22:25:04 503,808 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ComSvcConfig\​a29c71731e54f91d32ccc55d549312​6d\ComSvcConfig.ni.exe
 + 2008-07-23 22:27:37 237,568 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\CustomMarshal​ers\8b7076d09705567c6431176b69​3597ab\CustomMarshalers.ni.dll
 + 2008-07-23 22:27:38 15,360 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\dfsvc\314a2a2​c7ac434889e2478150e910adf\dfsv​c.ni.exe
 + 2008-07-23 22:27:38 249,856 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehCIR\56309ef​1e57faa5e1c01a04a7e3aefc2\ehCI​R.ni.dll
 + 2008-07-23 22:26:07 2,428,928 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepg\71e74bb​49db5f69f8ed020dd1cb0b6b6\ehep​g.ni.dll
 + 2008-07-23 22:26:15 360,448 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepgdat\507f​31ea7666854edb2752be04453c54\e​hepgdat.ni.dll
 + 2008-07-23 22:27:39 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtCOM\12b1​c96d740bd58807beab61bb7a83e6\e​hExtCOM.ni.dll
 + 2008-07-23 22:26:16 270,336 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtHost\877​e9f90267ecd61069716bd5c5c62b5\​ehExtHost.ni.exe
 + 2008-07-23 22:26:48 24,576 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtCOM\969​0acf6b16810061de6ed44368980a9\​ehiExtCOM.ni.dll
 + 2008-07-23 22:26:17 188,416 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtens\526​10279dc1c7658eafbf00b8d197bf9\​ehiExtens.ni.dll
 + 2008-07-23 22:26:18 610,304 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiPlay\6c123​aa14560b7dff4968bcfbcc48ba6\eh​iPlay.ni.dll
 + 2008-07-23 22:26:08 983,040 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiProxy\5f8a​ee18344b9910bbec6af974c074d5\e​hiProxy.ni.dll
 + 2008-07-23 22:26:18 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiReplay\0b31398ed7a071f087b271393a52203​8\ehiReplay.ni.dll
 + 2008-07-23 22:26:14 58,368 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiUserXp\ca1​5bb63e13565d7b8b168403a0dbf37\​ehiUserXp.ni.dll
 + 2008-07-23 22:26:19 839,680 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiVidCtl\f14​b581820693d30efb00f6c2753ff1a\​ehiVidCtl.ni.dll
 + 2008-07-23 22:26:20 376,832 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiwmp\54da10​294f5f71396a622da622c8c820\ehi​wmp.ni.dll
 + 2008-07-23 22:26:23 122,880 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiWUapi\9a8d​bbf00820151502bf5886759bd9ff\e​hiWUapi.ni.dll
 + 2008-07-23 22:26:23 1,949,696 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehRecObj\7b99​0bb48f1fb6b6c8a1008922579cbd\e​hRecObj.ni.dll
 + 2008-07-23 22:26:47 12,742,656 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehshell\41dde​58a0d3b2a978513f2a530590aae\eh​shell.ni.dll
 + 2008-07-23 22:26:52 577,536 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\EventViewer\3​68debb045e28955b65910779050ecc​c\EventViewer.ni.dll
 + 2008-07-23 22:26:48 86,016 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\loadmxf\91672​362ea8e76d7800c6d3176364d0b\lo​admxf.ni.exe
 + 2008-07-23 22:26:25 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstore\ce943​20ce05675ecc24593041cd9ca15\mc​store.ni.dll
 + 2008-07-23 22:26:26 315,392 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstoredb\6aa​5747fb711f9d478b1b943fddf2b61\​mcstoredb.ni.dll
 + 2008-07-23 22:27:05 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcupdate\98e5​b56f1514e49a2dce1134beed3eda\m​cupdate.ni.exe
 + 2008-07-23 22:26:48 258,048 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Mcx2Dvcs\81d0​64c3c21181a4a5ec456becbbef4c\M​cx2Dvcs.ni.dll
 + 2008-07-23 22:27:41 876,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Eng#\e24c7a7e58f9b3432df623​710b9c5e01\Microsoft.Build.Eng​ine.ni.dll
 + 2008-07-23 22:27:41 81,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Fra#\6dc26698fcb3f0f93759f3​c38a6207d5\Microsoft.Build.Fra​mework.ni.dll
 + 2008-07-23 22:27:44 1,695,744 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Tas#\87407c2d9c2530f716841b​6d6ebdf563\Microsoft.Build.Tas​ks.ni.dll
 + 2008-07-23 22:27:45 167,936 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Uti#\bdd6a68dce3ff4146b24af​df9759402b\Microsoft.Build.Uti​lities.ni.dll
 + 2008-07-23 22:27:08 1,441,792 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Ink​\d521fc6793855857df18b7cb9ab0a​caa\Microsoft.Ink.ni.dll
 + 2008-07-23 22:27:31 2,441,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.JSc​ript\2f558d3a6d024dfcdd1d62233​a067b40\Microsoft.JScript.ni.d​ll
 + 2008-07-23 22:26:54 614,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Man​agemen#\b059345a9c2a126e320e17​c2090dd354\Microsoft.Managemen​tConsole.ni.dll
 + 2008-07-23 22:26:17 618,496 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\14343af24080e0f0b2acd8​69f6d1211d\Microsoft.MediaCent​er.ni.dll
 + 2008-07-23 22:26:24 253,952 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\288266751f2bcc9d673520​ed1d1ac7a2\Microsoft.MediaCent​er.Shell.ni.dll
 + 2008-07-23 22:26:14 5,861,376 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\7ffb1a8f14e79ec2ea006e​54a4162c18\Microsoft.MediaCent​er.UI.ni.dll
 + 2008-07-23 22:26:27 704,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\88cdfe079a647ffba0850e​19ec3d2711\Microsoft.MediaCent​er.Sports.ni.dll
 + 2008-07-23 22:26:04 1,232,896 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\198b25c569e8a6fbb78092​fe9c697600\Microsoft.Transacti​ons.Bridge.ni.dll
 + 2008-07-23 22:27:15 401,408 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\b0da39820e35eb3821e69a​c8ace491a1\Microsoft.Transacti​ons.Bridge.Dtc.ni.dll
 + 2008-07-23 22:27:47 1,740,800 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualBas#\a96c6b0c75f8ea3eb13301​8ba3b49f3f\Microsoft.VisualBas​ic.ni.dll
 + 2008-07-23 22:21:54 17,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualC\ce2416df0a2df3ab6f06673c5​45d71de\Microsoft.VisualC.ni.d​ll
 + 2008-07-23 22:27:32 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vsa​\81c771cf263c377d46aaf249c7ab9​03a\Microsoft.Vsa.ni.dll
 + 2008-07-23 22:27:02 6,443,008 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MIGUIControls​\66ad568e1ea098a2099364bf66bda​ed8\MIGUIControls.ni.dll
 + 2008-07-23 22:27:18 1,691,648 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCEx\f5934f1​b89f7c8fb3f0bab1c21045f1c\MMCE​x.ni.dll
 + 2008-07-23 22:26:54 319,488 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCFxCommon\a​3d6cbb5a1efbd314e7080bbbd78d1c​d\MMCFxCommon.ni.dll
 + 2008-07-23 22:16:46 11,722,752 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mscorlib\5b3e​3b0551bcaa722c27dbb089c431e4\m​scorlib.ni.dll
 + 2008-07-23 22:27:18 102,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napcrypt\29d0​ab81098806db3b769de45054ea13\n​apcrypt.ni.dll
 + 2008-07-23 22:27:19 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\naphlpr\65fba​2f3c000945397537d9646148f6c\na​phlpr.ni.dll
 + 2008-07-23 22:27:20 126,976 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napinit\ad708​02a13332254382fd4bddbfbc8b3\na​pinit.ni.dll
 + 2008-07-23 22:27:21 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napsnap\ae9a5​64a6dd8814ba0ec381fd07be4bb\na​psnap.ni.dll
 + 2008-07-23 22:27:50 2,641,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Narrator\1b89​6bbb7ed678902995f5a2479962e8\N​arrator.ni.exe
 + 2008-07-23 22:27:52 1,581,056 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationB​uildTa#\7c78c24952fad7252c7ff7​f739fd6198\PresentationBuildTa​sks.ni.dll
 + 2008-07-23 22:22:06 40,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​FFRast#\b4a8dfd870b136a2c16abd​23850b99cb\PresentationCFFRast​erizer.ni.dll
 + 2008-07-23 22:19:03 12,570,624 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​ore\adcba7206e27f493c9f161339a​668cd1\PresentationCore.ni.dll
 + 2008-07-23 22:19:08 49,152 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ontCac#\f4bbb8d27bd38e1aec2ee0​a0a9646b31\PresentationFontCac​he.ni.exe
 + 2008-07-23 22:22:59 552,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\4bd2d5a15bb5178df5c5d2​4ef9003bb6\PresentationFramewo​rk.Luna.ni.dll
 + 2008-07-23 22:22:58 393,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\75438038f0d98e04583d01​68d671981e\PresentationFramewo​rk.Aero.ni.dll
 + 2008-07-23 22:22:56 15,040,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\7606ee23b2b3fd1d5d3d1c​10011d3ecc\PresentationFramewo​rk.ni.dll
 + 2008-07-23 22:23:00 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\e5c191994a86a85fa0b730​41297bf650\PresentationFramewo​rk.Royale.ni.dll
 + 2008-07-23 22:22:58 245,760 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\edbcf79ab063533f570e1f​4820a9e49b\PresentationFramewo​rk.Classic.ni.dll
 + 2008-07-23 22:27:58 2,035,712 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationU​I\fa8522105eb716eed71e99bb9bfe​06ee\PresentationUI.ni.dll
 + 2008-07-23 22:28:03 2,416,640 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ReachFramewor​k\99836ab309902e40176dc5ca0854​f7b2\ReachFramework.ni.dll
 + 2008-07-23 22:27:21 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ServiceModelR​eg\b682f5929b1f3f2a0b585cbc999​df489\ServiceModelReg.ni.exe
 + 2008-07-23 22:25:55 303,104 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMDiagnostics​\ee487a5b3e62f510183f68538f583​135\SMDiagnostics.ni.dll
 + 2008-07-23 22:27:23 323,584 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMSvcHost\470​e3064a09dc8107667143d09811786\​SMSvcHost.ni.exe
 + 2008-07-23 22:26:08 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\stdole\07c3757edda55c714c4e69a94be4e35​e\stdole.ni.dll
 + 2008-07-23 22:28:10 262,144 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\sysglobl\8113​05f0e9b3729e5a6a991b6645de92\s​ysglobl.ni.dll
 + 2008-07-23 22:20:06 163,840 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Syst

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 24/07/2008 à 16:15:28  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ComboFix 08-07-23.5 - fatlaflamme 2008-07-24 16:08:33.5 - NTFSx86 MINIMAL
 Microsoft® Windows Vista™ Édition Familiale Premium   6.0.6001.1.1252.1.1036.18.442 [GMT 2:00]
 Endroit: C:\Users\fatlaflamme\Desktop\C​omboFix.exe
 .

 ((((((((((((((((((((((((((((((​((((((   Autres suppressions   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .

 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr0.dat
 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr1.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.exe
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_nav.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_navps.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga.dat
 C:\Users\fatlaflamme\AppData\L​ocal\oemamga.exe
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_nav.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_navps.dat
 C:\Windows\system32\dteqkaen.i​ni
 C:\Windows\system32\jmcuwunu.d​ll
 C:\Windows\system32\MSINET.oca
 C:\Windows\system32\orqeanhr.d​ll
 C:\Windows\system32\phhbhvis.d​ll

 ----- BITS: Possible sites infect‚s -----

 http://premium.virginmega.fr
 .
 (((((((((((((((((((((((((((((   Fichiers cr‚‚s 2008-06-24 to 2008-07-24  ))))))))))))))))))))))))))))))​))))))
 .

 Pas de nouveau fichier cr‚‚ dans cet espace de temps

 .
 ((((((((((((((((((((((((((((((​((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .
 2008-07-24 14:04 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DNA
 2008-07-24 13:58 --------- d-----w C:\PROGRA~2\Symantec
 2008-07-23 22:15 174 --sha-w C:\Program Files\desktop.ini
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Sidebar
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Photo Gallery
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Mail
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Journal
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Defender
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Collaboration
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Calendar
 2008-07-23 13:03 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\BitTorrent
 2008-07-18 11:44 --------- d-----w C:\Program Files\BoontyGames
 2008-07-18 11:31 --------- d-----w C:\Program Files\Bonjour
 2008-07-14 17:52 --------- d-----w C:\PROGRA~2\Stardock
 2008-07-14 17:51 --------- d-----w C:\Program Files\Stardock
 2008-07-14 17:44 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Hamachi
 2008-07-14 17:39 25,280 ----a-w C:\Windows\system32\drivers\ha​machi.sys
 2008-07-13 23:49 --------- d-----w C:\Program Files\metronimo
 2008-07-13 17:42 --------- d-----w C:\Program Files\Gcompris
 2008-07-13 17:34 89,444,689 ----a-w C:\Program Files\gcompris-8.3.6.exe
 2008-07-13 16:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\GrabIt
 2008-07-13 16:05 --------- d-----w C:\Program Files\Navilog1
 2008-07-13 15:38 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Reasonable Software House Ltd
 2008-07-13 11:43 --------- d--h--r C:\Users\fatlaflamme\AppData\R​oaming\SecuROM
 2008-07-12 20:05 --------- d-----w C:\Program Files\Common Files\BOONTY Shared
 2008-07-12 20:05 --------- d-----w C:\PROGRA~2\BOONTY
 2008-07-11 17:04 --------- d-----w C:\Program Files\Trend Micro
 2008-07-11 16:43 --------- d-----w C:\PROGRA~2\Spybot - Search & Destroy
 2008-07-11 14:44 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
 2008-07-11 14:42 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Malwarebytes
 2008-07-11 14:42 --------- d-----w C:\PROGRA~2\Malwarebytes
 2008-07-07 15:35 34,296 ----a-w C:\Windows\system32\drivers\mb​amcatchme.sys
 2008-07-07 15:35 17,144 ----a-w C:\Windows\system32\drivers\mb​am.sys
 2008-07-05 08:53 --------- d-----w C:\Program Files\Apple Software Update
 2008-06-26 18:53 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Azureus
 2008-06-26 15:40 --------- d-----w C:\Program Files\AskSBar
 2008-06-26 14:41 --------- d-----w C:\Program Files\DNA
 2008-06-26 14:41 --------- d-----w C:\Program Files\BitTorrent
 2008-06-26 14:20 --------- d-----w C:\PROGRA~2\Azureus
 2008-06-26 14:06 --------- d-----w C:\Program Files\Sun
 2008-06-22 16:50 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\EoRezo
 2008-06-22 16:50 --------- d-----w C:\Program Files\EoRezo
 2008-06-22 16:43 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\ItsLabel
 2008-06-21 19:33 --------- d-----w C:\Program Files\DivX
 2008-06-21 19:33 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
 2008-06-21 19:30 20,724,776 ----a-w C:\Users\fatlaflamme\DivXInsta​ller.exe
 2008-06-21 19:13 --------- d-----w C:\PROGRA~2\DVD X Studios
 2008-06-17 08:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
 2008-06-17 07:55 --------- d-----w C:\Program Files\Conduit
 2008-06-17 07:53 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
 2008-06-15 23:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DivX
 2008-06-08 16:34 --------- d-----w C:\PROGRA~2\Microsoft Help
 2008-06-07 19:57 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Apple Computer
 2008-06-07 19:57 --------- d-----w C:\Program Files\iTunes
 2008-06-07 19:57 --------- d-----w C:\Program Files\iPod
 2008-06-07 19:56 --------- d-----w C:\PROGRA~2\Apple Computer
 2008-06-07 19:54 --------- d-----w C:\Program Files\QuickTime
 2008-06-07 19:51 --------- d-----w C:\Program Files\Common Files\Apple
 2008-06-07 19:51 --------- d-----w C:\PROGRA~2\Apple
 2008-06-07 19:38 --------- d-----w C:\PROGRA~2\eMule
 2008-06-01 11:58 --------- d-----w C:\PROGRA~2\WLInstaller
 2008-05-31 20:05 --------- d-----w C:\PROGRA~2\Lavasoft
 2008-05-31 00:10 --------- d-----w C:\Program Files\Norton Internet Security
 2008-05-30 23:47 805 ----a-w C:\Windows\system32\drivers\SY​MEVENT.INF
 2008-05-30 23:47 123,952 ----a-w C:\Windows\system32\drivers\SY​MEVENT.SYS
 2008-05-30 23:47 10,671 ----a-w C:\Windows\system32\drivers\SY​MEVENT.CAT
 2008-05-30 23:47 --------- d-----w C:\Program Files\Symantec
 2008-05-30 23:47 --------- d-----w C:\Program Files\Common Files\Symantec Shared
 2008-05-30 00:47 --------- d-----w C:\PROGRA~2\CheckPoint
 2008-05-27 12:59 --------- d-----w C:\Program Files\Common Files\Adobe
 .

 (((((((((((((((((((((((((((((   snapshot_2008-07-15_21.49.44.6​6   ))))))))))))))))))))))))))))))​)))))))))))
 .
 - 2008-03-08 04:30:03 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 + 2008-03-08 04:19:20 2,153,984 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 - 2008-03-08 04:30:03 537,600 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 + 2008-03-08 04:19:20 540,672 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 - 2006-11-02 09:46:02 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 + 2008-01-19 07:33:41 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 - 2008-03-08 00:22:51 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 + 2008-03-08 01:58:43 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 - 2008-03-08 04:30:03 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 + 2008-03-08 04:19:21 458,752 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 - 2008-03-08 04:30:03 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 + 2008-03-08 04:19:21 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 - 2006-11-02 09:46:02 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 + 2008-01-19 07:33:43 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 - 2008-04-25 04:23:06 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 + 2008-01-19 07:34:28 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 - 2006-11-02 12:35:32 143,360 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 + 2008-01-19 07:38:12 144,384 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 - 2006-10-20 01:13:56 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 + 2008-01-05 11:26:08 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 - 2006-10-20 01:14:03 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 + 2008-01-05 11:26:17 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 - 2006-11-02 12:35:34 77,824 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 + 2008-01-19 07:38:31 78,336 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 - 2008-04-23 04:28:09 136,704 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 + 2008-04-23 04:44:47 140,288 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 - 2006-11-02 12:35:33 105,472 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 + 2008-01-19 07:38:32 106,496 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 - 2006-11-02 12:35:24 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 + 2008-01-19 07:38:34 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 - 2006-11-02 12:36:03 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 + 2008-01-05 11:21:39 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 - 2006-10-20 01:14:15 4,366,336 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 + 2008-01-05 11:26:32 4,444,160 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 - 2006-11-02 09:47:03 39,936 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 + 2008-01-19 07:38:44 46,080 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 - 2006-11-02 09:47:03 98,816 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 + 2008-01-19 07:38:45 103,936 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 - 2006-11-02 12:36:01 3,915,264 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 + 2008-01-05 11:21:53 4,174,336 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 - 2006-10-20 01:14:47 482,304 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 + 2008-01-05 11:26:54 483,840 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 - 2006-10-20 01:14:47 2,894,336 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 + 2008-01-05 11:26:54 3,036,160 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 - 2006-10-20 01:14:51 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 + 2008-01-05 11:26:55 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 - 2006-11-02 06:34:22 114,176 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 + 2008-01-19 03:22:55 113,664 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 - 2006-11-02 12:36:01 344,064 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 + 2008-01-05 11:21:55 346,624 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 - 2006-10-20 01:14:53 260,096 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 + 2008-01-05 11:26:59 261,120 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 - 2008-05-21 05:50:17 5,156,864 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 + 2008-01-05 11:26:59 5,431,296 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 - 2006-10-20 01:13:37 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 + 2008-01-05 11:25:52 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 - 2006-11-02 15:46:16 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 + 2008-01-05 11:26:11 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 - 2006-10-20 01:13:41 503,808 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 + 2008-01-05 11:25:59 507,904 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 - 2006-11-02 12:36:03 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 + 2008-01-05 11:21:39 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 - 2006-10-20 01:13:56 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 + 2008-01-05 11:26:08 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 - 2006-10-20 01:13:57 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 + 2008-01-05 11:26:11 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 - 2008-04-23 04:27:53 864,256 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 + 2008-01-19 07:38:16 827,392 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 - 2006-11-02 12:35:28 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 + 2008-01-19 07:38:16 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 - 2008-04-23 04:27:55 135,168 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 + 2008-01-19 07:38:17 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 - 2008-04-23 04:27:56 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 + 2006-11-02 12:35:28 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 - 2006-11-02 12:35:32 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 + 2008-01-19 07:38:18 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 - 2006-11-02 12:35:30 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 + 2008-01-19 07:38:18 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 - 2006-11-02 12:35:32 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 + 2008-01-19 07:38:19 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 - 2006-11-02 12:35:34 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 + 2008-01-19 07:38:19 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 - 2006-11-02 12:35:29 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 + 2008-01-19 07:38:19 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 - 2008-04-23 04:27:59 4,374,528 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 + 2008-04-23 04:44:14 4,046,848 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 - 2006-11-02 15:46:10 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 + 2008-01-19 07:53:44 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 - 2006-11-02 09:46:54 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 + 2008-01-19 07:38:21 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 - 2006-10-20 01:14:02 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 + 2008-01-05 11:26:12 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 - 2006-10-20 01:14:02 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 + 2008-01-05 11:26:12 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 - 2006-10-20 01:14:02 5,632 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 + 2008-01-05 11:26:13 6,656 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 - 2006-11-02 12:35:29 200,704 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 + 2008-01-19 07:38:31 176,128 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 - 2006-11-02 15:46:16 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 + 2008-01-05 11:26:11 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 - 2006-10-20 01:14:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 + 2008-01-05 11:26:17 348,160 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 - 2006-10-20 01:14:03 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 + 2008-01-05 11:26:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 - 2006-11-02 15:46:15 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 + 2008-01-05 11:26:11 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 - 2006-10-20 01:14:03 647,168 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 + 2008-01-05 11:26:17 655,360 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 - 2006-11-02 15:46:12 10,240 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 + 2008-01-05 11:26:11 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 - 2006-10-20 01:14:04 73,728 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 + 2008-01-05 11:26:17 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 + 2008-01-19 07:53:49 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 - 2006-11-02 15:46:13 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 + 2008-01-05 11:26:11 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 - 2006-10-20 01:14:04 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 + 2008-01-05 11:26:19 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 + 2008-01-19 07:53:50 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 - 2006-11-02 09:47:01 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 + 2008-01-19 07:38:35 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 - 2008-04-23 04:28:14 1,196,032 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 + 2008-01-19 07:38:36 1,241,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 - 2006-11-02 12:35:33 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 + 2008-01-19 07:38:36 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 - 2008-04-23 04:28:14 2,342,912 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 + 2008-04-23 04:45:00 1,957,888 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 - 2008-04-23 04:28:13 217,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 + 2008-01-19 07:38:35 204,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 - 2006-11-02 15:46:16 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 + 2008-01-05 11:26:41 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 - 2006-11-02 12:36:03 352,256 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 + 2008-01-05 11:21:39 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 - 2006-11-02 15:46:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 + 2008-01-05 11:26:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 - 2006-10-20 01:14:05 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 + 2008-01-05 11:26:19 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 - 2006-11-02 15:46:09 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 + 2008-01-05 11:26:17 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 - 2006-10-20 01:14:05 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 + 2008-01-05 11:26:23 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 + 2008-01-05 11:26:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 - 2006-10-20 01:14:05 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 + 2008-01-05 11:26:23 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 - 2006-10-20 01:14:05 667,648 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 + 2008-01-05 11:26:23 671,744 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 - 2006-10-20 01:14:05 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 + 2008-01-05 11:26:24 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 - 2006-10-20 01:14:05 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 + 2008-01-05 11:26:23 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 - 2006-11-02 15:46:16 1,400,832 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 + 2008-01-19 07:53:52 1,515,520 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 - 2006-11-02 09:47:03 3,100,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 + 2008-01-19 07:38:41 3,371,008 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 - 2006-11-02 09:47:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 + 2008-01-19 07:38:41 417,792 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 - 2006-11-02 15:46:13 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 + 2008-01-05 11:26:12 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 - 2006-11-02 09:47:03 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 + 2008-01-19 07:38:45 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 - 2006-11-02 15:46:15 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 + 2008-01-19 07:53:54 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 - 2006-11-02 09:47:04 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 + 2008-01-19 07:38:45 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 - 2006-11-02 12:36:00 593,920 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 + 2008-01-05 11:21:52 602,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 - 2006-11-02 12:36:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 + 2008-01-05 11:21:52 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 - 2006-11-02 12:36:01 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 + 2008-01-05 11:21:53 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 - 2006-11-02 12:36:01 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 + 2008-01-05 11:21:53 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 - 2006-11-02 12:36:01 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 + 2008-01-05 11:21:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 - 2006-11-02 12:36:01 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 + 2008-01-05 11:21:53 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 - 2006-11-02 12:36:01 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 + 2008-01-05 11:21:54 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 - 2006-11-02 12:36:01 4,972,544 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 + 2008-01-05 11:21:53 5,210,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 - 2006-11-02 12:36:00 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 + 2008-01-05 11:21:55 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 - 2006-11-02 12:36:00 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 + 2008-01-05 11:21:55 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 - 2006-11-02 12:36:03 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 + 2008-01-05 11:21:39 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 - 2006-11-02 12:36:03 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 + 2008-01-05 11:21:39 102,400 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 - 2006-11-02 12:36:02 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 + 2008-01-05 11:21:39 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 - 2006-11-02 15:46:15 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 + 2008-01-05 11:26:12 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 - 2006-10-20 01:14:46 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 + 2008-01-05 11:26:54 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 - 2006-11-02 15:46:15 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 + 2008-01-05 11:26:12 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 - 2006-10-20 01:14:46 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 + 2008-01-05 11:26:54 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 - 2006-11-02 15:46:10 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 + 2008-01-05 11:26:12 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 - 2006-10-20 01:14:46 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 + 2008-01-05 11:26:54 425,984 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 - 2006-11-02 15:46:16 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 + 2008-01-05 11:26:12 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 - 2006-11-02 15:46:11 335,872 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 + 2008-01-05 11:26:13 344,064 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 - 2006-11-02 15:46:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 + 2008-01-05 11:26:13 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 - 2006-10-20 01:14:48 716,800 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 + 2008-01-05 11:26:55 741,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 - 2006-11-02 15:46:16 385,024 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 + 2008-01-05 11:26:14 389,120 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 - 2006-10-20 01:14:49 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 + 2008-01-05 11:26:55 933,888 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 - 2006-11-02 15:46:09 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 + 2008-01-05 11:26:14 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 - 2006-10-20 01:14:49 5,050,368 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 + 2008-01-05 11:26:55 5,070,848 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 - 2006-11-02 15:46:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 + 2008-01-05 11:26:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 - 2006-10-20 01:14:50 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 + 2008-01-05 11:26:55 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 - 2006-11-02 15:46:18 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 + 2008-01-05 11:26:16 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 - 2006-10-20 01:14:50 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 + 2008-01-05 11:26:55 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 - 2006-11-02 15:46:10 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 + 2008-01-05 11:26:16 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 - 2006-10-20 01:14:51 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 + 2008-01-05 11:26:55 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 - 2006-11-02 15:46:13 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 + 2008-01-05 11:26:16 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 - 2006-10-20 01:14:51 704,512 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 + 2008-01-05 11:26:55 630,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 - 2006-11-02 15:46:11 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 - 2006-11-02 15:46:10 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 + 2008-01-05 11:26:37 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 - 2006-11-02 15:46:09 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 + 2008-01-05 11:26:39 57,344 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 - 2006-11-02 12:36:02 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 + 2008-01-05 11:21:38 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 - 2006-11-02 12:36:02 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 + 2008-01-05 11:21:37 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 - 2006-11-02 12:36:02 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 + 2008-01-05 11:21:38 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 - 2006-11-02 15:46:09 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 + 2008-01-05 11:26:17 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 - 2006-10-20 01:14:52 368,640 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 + 2008-01-05 11:26:58 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 + 2008-01-05 11:26:17 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 - 2006-10-20 01:14:52 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 - 2006-11-02 15:46:11 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 + 2008-01-05 11:26:17 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 - 2006-11-02 15:46:08 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 - 2006-10-20 01:14:53 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 + 2008-01-05 11:26:58 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 - 2006-11-02 15:46:13 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 + 2008-01-05 11:26:17 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 - 2006-10-20 01:14:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 + 2008-01-05 11:26:58 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 - 2006-11-02 15:46:13 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 + 2008-01-05 11:26:41 98,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 - 2006-11-02 12:36:03 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 + 2008-01-05 11:21:38 929,792 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 + 2008-01-05 11:26:17 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 - 2006-10-20 01:14:53 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 - 2006-11-02 12:36:02 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 + 2008-01-05 11:21:40 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 - 2006-11-02 15:46:14 475,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 + 2008-01-05 11:26:41 499,712 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 - 2006-11-02 12:36:03 16,384 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 + 2008-01-05 11:21:40 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 - 2006-11-02 12:36:03 5,672,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 + 2008-01-05 11:21:38 5,971,968 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 + 2008-01-05 11:26:17 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 - 2006-10-20 01:14:53 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 + 2008-01-05 11:26:58 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 - 2006-11-02 12:36:01 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 + 2008-01-05 11:21:55 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 - 2006-11-02 15:46:11 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 + 2008-01-05 11:26:17 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 - 2006-11-02 15:46:09 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 - 2006-10-20 01:14:54 835,584 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 + 2008-01-05 11:26:59 884,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 - 2006-10-20 01:14:55 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 + 2008-01-05 11:26:59 90,112 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 - 2008-05-21 05:50:18 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 + 2008-01-05 11:26:17 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 - 2006-11-02 15:46:16 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 - 2006-10-20 01:14:55 823,296 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 + 2008-01-05 11:27:00 839,680 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 - 2006-11-02 15:46:16 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 + 2008-01-05 11:26:17 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 - 2006-10-20 01:14:56 5,414,912 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 + 2008-01-05 11:27:02 5,013,504 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 - 2006-11-02 15:46:09 191,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 + 2008-01-05 11:26:54 193,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 - 2006-11-02 12:36:00 1,108,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 + 2008-01-05 11:22:14 1,152,040 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 - 2006-11-02 15:46:15 318,288 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 + 2008-01-05 11:26:54 320,576 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 - 2006-11-02 12:36:00 1,641,272 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 + 2008-01-05 11:22:15 1,635,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 - 2006-11-02 15:46:12 43,840 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 + 2008-01-05 11:26:54 46,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 - 2006-11-02 12:36:00 588,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 + 2008-01-05 11:22:15 578,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 - 2006-11-02 15:46:09 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 + 2008-01-05 11:26:17 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 - 2006-10-20 01:14:58 2,039,808 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 + 2008-01-05 11:27:03 2,068,480 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 - 2006-10-20 01:14:51 3,035,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 + 2008-01-05 11:26:55 3,076,096 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 - 2006-11-02 15:46:16 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 + 2008-01-19 07:54:01 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 - 2006-11-02 09:47:22 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 + 2008-01-19 07:39:26 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 - 2006-11-02 12:36:01 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 + 2008-01-05 11:21:56 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 - 2006-11-02 12:36:01 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 + 2008-01-05 11:22:00 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 - 2006-11-02 12:36:01 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 + 2008-01-05 11:22:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 - 2006-11-02 12:36:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 + 2008-01-05 11:22:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 - 2006-11-02 12:36:00 1,167,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 + 2008-01-05 11:22:00 1,204,224 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 - 2006-11-02 12:36:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 + 2008-01-05 11:22:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 - 2006-11-02 12:36:03 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-01-05 11:21:40 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-07-23 22:21:26 27,136 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Accessibility​\e2170385d6492ce6539124c5a3b36​1a8\Accessibility.ni.dll
 + 2008-07-23 22:27:37 884,736 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\AspNetMMCExt\​b3a5c81e91bf9b1e63697e53a41ac0​ed\AspNetMMCExt.ni.dll
 + 2008-07-23 22:25:00 425,984 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\BDATunePIA\7b​38b32ba60b3eb9195c4e1fcc2c3b9d​\BDATunePIA.ni.dll
 + 2008-07-23 22:25:04 503,808 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ComSvcConfig\​a29c71731e54f91d32ccc55d549312​6d\ComSvcConfig.ni.exe
 + 2008-07-23 22:27:37 237,568 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\CustomMarshal​ers\8b7076d09705567c6431176b69​3597ab\CustomMarshalers.ni.dll
 + 2008-07-23 22:27:38 15,360 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\dfsvc\314a2a2​c7ac434889e2478150e910adf\dfsv​c.ni.exe
 + 2008-07-23 22:27:38 249,856 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehCIR\56309ef​1e57faa5e1c01a04a7e3aefc2\ehCI​R.ni.dll
 + 2008-07-23 22:26:07 2,428,928 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepg\71e74bb​49db5f69f8ed020dd1cb0b6b6\ehep​g.ni.dll
 + 2008-07-23 22:26:15 360,448 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepgdat\507f​31ea7666854edb2752be04453c54\e​hepgdat.ni.dll
 + 2008-07-23 22:27:39 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtCOM\12b1​c96d740bd58807beab61bb7a83e6\e​hExtCOM.ni.dll
 + 2008-07-23 22:26:16 270,336 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtHost\877​e9f90267ecd61069716bd5c5c62b5\​ehExtHost.ni.exe
 + 2008-07-23 22:26:48 24,576 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtCOM\969​0acf6b16810061de6ed44368980a9\​ehiExtCOM.ni.dll
 + 2008-07-23 22:26:17 188,416 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtens\526​10279dc1c7658eafbf00b8d197bf9\​ehiExtens.ni.dll
 + 2008-07-23 22:26:18 610,304 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiPlay\6c123​aa14560b7dff4968bcfbcc48ba6\eh​iPlay.ni.dll
 + 2008-07-23 22:26:08 983,040 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiProxy\5f8a​ee18344b9910bbec6af974c074d5\e​hiProxy.ni.dll
 + 2008-07-23 22:26:18 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiReplay\0b31398ed7a071f087b271393a52203​8\ehiReplay.ni.dll
 + 2008-07-23 22:26:14 58,368 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiUserXp\ca1​5bb63e13565d7b8b168403a0dbf37\​ehiUserXp.ni.dll
 + 2008-07-23 22:26:19 839,680 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiVidCtl\f14​b581820693d30efb00f6c2753ff1a\​ehiVidCtl.ni.dll
 + 2008-07-23 22:26:20 376,832 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiwmp\54da10​294f5f71396a622da622c8c820\ehi​wmp.ni.dll
 + 2008-07-23 22:26:23 122,880 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiWUapi\9a8d​bbf00820151502bf5886759bd9ff\e​hiWUapi.ni.dll
 + 2008-07-23 22:26:23 1,949,696 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehRecObj\7b99​0bb48f1fb6b6c8a1008922579cbd\e​hRecObj.ni.dll
 + 2008-07-23 22:26:47 12,742,656 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehshell\41dde​58a0d3b2a978513f2a530590aae\eh​shell.ni.dll
 + 2008-07-23 22:26:52 577,536 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\EventViewer\3​68debb045e28955b65910779050ecc​c\EventViewer.ni.dll
 + 2008-07-23 22:26:48 86,016 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\loadmxf\91672​362ea8e76d7800c6d3176364d0b\lo​admxf.ni.exe
 + 2008-07-23 22:26:25 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstore\ce943​20ce05675ecc24593041cd9ca15\mc​store.ni.dll
 + 2008-07-23 22:26:26 315,392 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstoredb\6aa​5747fb711f9d478b1b943fddf2b61\​mcstoredb.ni.dll
 + 2008-07-23 22:27:05 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcupdate\98e5​b56f1514e49a2dce1134beed3eda\m​cupdate.ni.exe
 + 2008-07-23 22:26:48 258,048 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Mcx2Dvcs\81d0​64c3c21181a4a5ec456becbbef4c\M​cx2Dvcs.ni.dll
 + 2008-07-23 22:27:41 876,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Eng#\e24c7a7e58f9b3432df623​710b9c5e01\Microsoft.Build.Eng​ine.ni.dll
 + 2008-07-23 22:27:41 81,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Fra#\6dc26698fcb3f0f93759f3​c38a6207d5\Microsoft.Build.Fra​mework.ni.dll
 + 2008-07-23 22:27:44 1,695,744 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Tas#\87407c2d9c2530f716841b​6d6ebdf563\Microsoft.Build.Tas​ks.ni.dll
 + 2008-07-23 22:27:45 167,936 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Uti#\bdd6a68dce3ff4146b24af​df9759402b\Microsoft.Build.Uti​lities.ni.dll
 + 2008-07-23 22:27:08 1,441,792 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Ink​\d521fc6793855857df18b7cb9ab0a​caa\Microsoft.Ink.ni.dll
 + 2008-07-23 22:27:31 2,441,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.JSc​ript\2f558d3a6d024dfcdd1d62233​a067b40\Microsoft.JScript.ni.d​ll
 + 2008-07-23 22:26:54 614,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Man​agemen#\b059345a9c2a126e320e17​c2090dd354\Microsoft.Managemen​tConsole.ni.dll
 + 2008-07-23 22:26:17 618,496 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\14343af24080e0f0b2acd8​69f6d1211d\Microsoft.MediaCent​er.ni.dll
 + 2008-07-23 22:26:24 253,952 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\288266751f2bcc9d673520​ed1d1ac7a2\Microsoft.MediaCent​er.Shell.ni.dll
 + 2008-07-23 22:26:14 5,861,376 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\7ffb1a8f14e79ec2ea006e​54a4162c18\Microsoft.MediaCent​er.UI.ni.dll
 + 2008-07-23 22:26:27 704,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\88cdfe079a647ffba0850e​19ec3d2711\Microsoft.MediaCent​er.Sports.ni.dll
 + 2008-07-23 22:26:04 1,232,896 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\198b25c569e8a6fbb78092​fe9c697600\Microsoft.Transacti​ons.Bridge.ni.dll
 + 2008-07-23 22:27:15 401,408 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\b0da39820e35eb3821e69a​c8ace491a1\Microsoft.Transacti​ons.Bridge.Dtc.ni.dll
 + 2008-07-23 22:27:47 1,740,800 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualBas#\a96c6b0c75f8ea3eb13301​8ba3b49f3f\Microsoft.VisualBas​ic.ni.dll
 + 2008-07-23 22:21:54 17,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualC\ce2416df0a2df3ab6f06673c5​45d71de\Microsoft.VisualC.ni.d​ll
 + 2008-07-23 22:27:32 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vsa​\81c771cf263c377d46aaf249c7ab9​03a\Microsoft.Vsa.ni.dll
 + 2008-07-23 22:27:02 6,443,008 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MIGUIControls​\66ad568e1ea098a2099364bf66bda​ed8\MIGUIControls.ni.dll
 + 2008-07-23 22:27:18 1,691,648 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCEx\f5934f1​b89f7c8fb3f0bab1c21045f1c\MMCE​x.ni.dll
 + 2008-07-23 22:26:54 319,488 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCFxCommon\a​3d6cbb5a1efbd314e7080bbbd78d1c​d\MMCFxCommon.ni.dll
 + 2008-07-23 22:16:46 11,722,752 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mscorlib\5b3e​3b0551bcaa722c27dbb089c431e4\m​scorlib.ni.dll
 + 2008-07-23 22:27:18 102,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napcrypt\29d0​ab81098806db3b769de45054ea13\n​apcrypt.ni.dll
 + 2008-07-23 22:27:19 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\naphlpr\65fba​2f3c000945397537d9646148f6c\na​phlpr.ni.dll
 + 2008-07-23 22:27:20 126,976 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napinit\ad708​02a13332254382fd4bddbfbc8b3\na​pinit.ni.dll
 + 2008-07-23 22:27:21 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napsnap\ae9a5​64a6dd8814ba0ec381fd07be4bb\na​psnap.ni.dll
 + 2008-07-23 22:27:50 2,641,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Narrator\1b89​6bbb7ed678902995f5a2479962e8\N​arrator.ni.exe
 + 2008-07-23 22:27:52 1,581,056 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationB​uildTa#\7c78c24952fad7252c7ff7​f739fd6198\PresentationBuildTa​sks.ni.dll
 + 2008-07-23 22:22:06 40,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​FFRast#\b4a8dfd870b136a2c16abd​23850b99cb\PresentationCFFRast​erizer.ni.dll
 + 2008-07-23 22:19:03 12,570,624 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​ore\adcba7206e27f493c9f161339a​668cd1\PresentationCore.ni.dll
 + 2008-07-23 22:19:08 49,152 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ontCac#\f4bbb8d27bd38e1aec2ee0​a0a9646b31\PresentationFontCac​he.ni.exe
 + 2008-07-23 22:22:59 552,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\4bd2d5a15bb5178df5c5d2​4ef9003bb6\PresentationFramewo​rk.Luna.ni.dll
 + 2008-07-23 22:22:58 393,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\75438038f0d98e04583d01​68d671981e\PresentationFramewo​rk.Aero.ni.dll
 + 2008-07-23 22:22:56 15,040,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\7606ee23b2b3fd1d5d3d1c​10011d3ecc\PresentationFramewo​rk.ni.dll
 + 2008-07-23 22:23:00 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\e5c191994a86a85fa0b730​41297bf650\PresentationFramewo​rk.Royale.ni.dll
 + 2008-07-23 22:22:58 245,760 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\edbcf79ab063533f570e1f​4820a9e49b\PresentationFramewo​rk.Classic.ni.dll
 + 2008-07-23 22:27:58 2,035,712 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationU​I\fa8522105eb716eed71e99bb9bfe​06ee\PresentationUI.ni.dll
 + 2008-07-23 22:28:03 2,416,640 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ReachFramewor​k\99836ab309902e40176dc5ca0854​f7b2\ReachFramework.ni.dll
 + 2008-07-23 22:27:21 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ServiceModelR​eg\b682f5929b1f3f2a0b585cbc999​df489\ServiceModelReg.ni.exe
 + 2008-07-23 22:25:55 303,104 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMDiagnostics​\ee487a5b3e62f510183f68538f583​135\SMDiagnostics.ni.dll
 + 2008-07-23 22:27:23 323,584 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMSvcHost\470​e3064a09dc8107667143d09811786\​SMSvcHost.ni.exe
 + 2008-07-23 22:26:08 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\stdole\07c3757edda55c714c4e69a94be4e35​e\stdole.ni.dll
 + 2008-07-23 22:28:10 262,144 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\sysglobl\8113​05f0e9b3729e5a6a991b6645de92\s​ysglobl.ni.dll
 + 2008-07-23 22:20:06 163,840 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Syst

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 24/07/2008 à 16:15:39  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
ComboFix 08-07-23.5 - fatlaflamme 2008-07-24 16:08:33.5 - NTFSx86 MINIMAL
 Microsoft® Windows Vista™ Édition Familiale Premium   6.0.6001.1.1252.1.1036.18.442 [GMT 2:00]
 Endroit: C:\Users\fatlaflamme\Desktop\C​omboFix.exe
 .

 ((((((((((((((((((((((((((((((​((((((   Autres suppressions   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .

 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr0.dat
 C:\PROGRA~2\Microsoft\Network\​Downloader\qmgr1.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga.exe
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_nav.dat
 C:\Users\FATLAF~1\AppData\Loca​l\oemamga_navps.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga.dat
 C:\Users\fatlaflamme\AppData\L​ocal\oemamga.exe
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_nav.dat
 c:\Users\fatlaflamme\AppData\L​ocal\oemamga_navps.dat
 C:\Windows\system32\dteqkaen.i​ni
 C:\Windows\system32\jmcuwunu.d​ll
 C:\Windows\system32\MSINET.oca
 C:\Windows\system32\orqeanhr.d​ll
 C:\Windows\system32\phhbhvis.d​ll

 ----- BITS: Possible sites infect‚s -----

 http://premium.virginmega.fr
 .
 (((((((((((((((((((((((((((((   Fichiers cr‚‚s 2008-06-24 to 2008-07-24  ))))))))))))))))))))))))))))))​))))))
 .

 Pas de nouveau fichier cr‚‚ dans cet espace de temps

 .
 ((((((((((((((((((((((((((((((​((((   Compte-rendu de Find3M   ))))))))))))))))))))))))))))))​))))))))))))))))))
 .
 2008-07-24 14:04 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DNA
 2008-07-24 13:58 --------- d-----w C:\PROGRA~2\Symantec
 2008-07-23 22:15 174 --sha-w C:\Program Files\desktop.ini
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Sidebar
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Photo Gallery
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Mail
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Journal
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Defender
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Collaboration
 2008-07-23 22:05 --------- d-----w C:\Program Files\Windows Calendar
 2008-07-23 13:03 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\BitTorrent
 2008-07-18 11:44 --------- d-----w C:\Program Files\BoontyGames
 2008-07-18 11:31 --------- d-----w C:\Program Files\Bonjour
 2008-07-14 17:52 --------- d-----w C:\PROGRA~2\Stardock
 2008-07-14 17:51 --------- d-----w C:\Program Files\Stardock
 2008-07-14 17:44 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Hamachi
 2008-07-14 17:39 25,280 ----a-w C:\Windows\system32\drivers\ha​machi.sys
 2008-07-13 23:49 --------- d-----w C:\Program Files\metronimo
 2008-07-13 17:42 --------- d-----w C:\Program Files\Gcompris
 2008-07-13 17:34 89,444,689 ----a-w C:\Program Files\gcompris-8.3.6.exe
 2008-07-13 16:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\GrabIt
 2008-07-13 16:05 --------- d-----w C:\Program Files\Navilog1
 2008-07-13 15:38 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Reasonable Software House Ltd
 2008-07-13 11:43 --------- d--h--r C:\Users\fatlaflamme\AppData\R​oaming\SecuROM
 2008-07-12 20:05 --------- d-----w C:\Program Files\Common Files\BOONTY Shared
 2008-07-12 20:05 --------- d-----w C:\PROGRA~2\BOONTY
 2008-07-11 17:04 --------- d-----w C:\Program Files\Trend Micro
 2008-07-11 16:43 --------- d-----w C:\PROGRA~2\Spybot - Search & Destroy
 2008-07-11 14:44 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
 2008-07-11 14:42 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Malwarebytes
 2008-07-11 14:42 --------- d-----w C:\PROGRA~2\Malwarebytes
 2008-07-07 15:35 34,296 ----a-w C:\Windows\system32\drivers\mb​amcatchme.sys
 2008-07-07 15:35 17,144 ----a-w C:\Windows\system32\drivers\mb​am.sys
 2008-07-05 08:53 --------- d-----w C:\Program Files\Apple Software Update
 2008-06-26 18:53 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Azureus
 2008-06-26 15:40 --------- d-----w C:\Program Files\AskSBar
 2008-06-26 14:41 --------- d-----w C:\Program Files\DNA
 2008-06-26 14:41 --------- d-----w C:\Program Files\BitTorrent
 2008-06-26 14:20 --------- d-----w C:\PROGRA~2\Azureus
 2008-06-26 14:06 --------- d-----w C:\Program Files\Sun
 2008-06-22 16:50 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\EoRezo
 2008-06-22 16:50 --------- d-----w C:\Program Files\EoRezo
 2008-06-22 16:43 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\ItsLabel
 2008-06-21 19:33 --------- d-----w C:\Program Files\DivX
 2008-06-21 19:33 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
 2008-06-21 19:30 20,724,776 ----a-w C:\Users\fatlaflamme\DivXInsta​ller.exe
 2008-06-21 19:13 --------- d-----w C:\PROGRA~2\DVD X Studios
 2008-06-17 08:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
 2008-06-17 07:55 --------- d-----w C:\Program Files\Conduit
 2008-06-17 07:53 2,560 ----a-w C:\Windows\_MSRSTRT.EXE
 2008-06-15 23:51 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\DivX
 2008-06-08 16:34 --------- d-----w C:\PROGRA~2\Microsoft Help
 2008-06-07 19:57 --------- d-----w C:\Users\fatlaflamme\AppData\R​oaming\Apple Computer
 2008-06-07 19:57 --------- d-----w C:\Program Files\iTunes
 2008-06-07 19:57 --------- d-----w C:\Program Files\iPod
 2008-06-07 19:56 --------- d-----w C:\PROGRA~2\Apple Computer
 2008-06-07 19:54 --------- d-----w C:\Program Files\QuickTime
 2008-06-07 19:51 --------- d-----w C:\Program Files\Common Files\Apple
 2008-06-07 19:51 --------- d-----w C:\PROGRA~2\Apple
 2008-06-07 19:38 --------- d-----w C:\PROGRA~2\eMule
 2008-06-01 11:58 --------- d-----w C:\PROGRA~2\WLInstaller
 2008-05-31 20:05 --------- d-----w C:\PROGRA~2\Lavasoft
 2008-05-31 00:10 --------- d-----w C:\Program Files\Norton Internet Security
 2008-05-30 23:47 805 ----a-w C:\Windows\system32\drivers\SY​MEVENT.INF
 2008-05-30 23:47 123,952 ----a-w C:\Windows\system32\drivers\SY​MEVENT.SYS
 2008-05-30 23:47 10,671 ----a-w C:\Windows\system32\drivers\SY​MEVENT.CAT
 2008-05-30 23:47 --------- d-----w C:\Program Files\Symantec
 2008-05-30 23:47 --------- d-----w C:\Program Files\Common Files\Symantec Shared
 2008-05-30 00:47 --------- d-----w C:\PROGRA~2\CheckPoint
 2008-05-27 12:59 --------- d-----w C:\Program Files\Common Files\Adobe
 .

 (((((((((((((((((((((((((((((   snapshot_2008-07-15_21.49.44.6​6   ))))))))))))))))))))))))))))))​)))))))))))
 .
 - 2008-03-08 04:30:03 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 + 2008-03-08 04:19:20 2,153,984 ----a-w C:\Windows\AppPatch\AcGenral.d​ll
 - 2008-03-08 04:30:03 537,600 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 + 2008-03-08 04:19:20 540,672 ----a-w C:\Windows\AppPatch\AcLayers.d​ll
 - 2006-11-02 09:46:02 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 + 2008-01-19 07:33:41 237,568 ----a-w C:\Windows\AppPatch\AcRedir.dl​l
 - 2008-03-08 00:22:51 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 + 2008-03-08 01:58:43 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
 - 2008-03-08 04:30:03 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 + 2008-03-08 04:19:21 458,752 ----a-w C:\Windows\AppPatch\AcSpecfc.d​ll
 - 2008-03-08 04:30:03 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 + 2008-03-08 04:19:21 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.d​ll
 - 2006-11-02 09:46:02 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 + 2008-01-19 07:33:43 40,960 ----a-w C:\Windows\AppPatch\apihex86.d​ll
 - 2008-04-25 04:23:06 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 + 2008-01-19 07:34:28 52,736 ----a-w C:\Windows\AppPatch\iebrshim.d​ll
 - 2006-11-02 12:35:32 143,360 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 + 2008-01-19 07:38:12 144,384 ----a-w C:\Windows\assembly\GAC_32\BDA​TunePIA\6.0.6000.0__31bf3856ad​364e35\BDATunePIA.dll
 - 2006-10-20 01:13:56 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 + 2008-01-05 11:26:08 69,120 ----a-w C:\Windows\assembly\GAC_32\Cus​tomMarshalers\2.0.0.0__b03f5f7​f11d50a3a\CustomMarshalers.dll
 - 2006-10-20 01:14:03 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 + 2008-01-05 11:26:17 72,192 ----a-w C:\Windows\assembly\GAC_32\ISy​mWrapper\2.0.0.0__b03f5f7f11d5​0a3a\ISymWrapper.dll
 - 2006-11-02 12:35:34 77,824 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 + 2008-01-19 07:38:31 78,336 ----a-w C:\Windows\assembly\GAC_32\mcs​toredb\6.0.6000.0__31bf3856ad3​64e35\mcstoredb.dll
 - 2008-04-23 04:28:09 136,704 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 + 2008-04-23 04:44:47 140,288 ----a-w C:\Windows\assembly\GAC_32\mcu​pdate\6.0.6000.0__31bf3856ad36​4e35\mcupdate.exe
 - 2006-11-02 12:35:33 105,472 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 + 2008-01-19 07:38:32 106,496 ----a-w C:\Windows\assembly\GAC_32\Mcx​2Dvcs\6.0.6000.0__31bf3856ad36​4e35\Mcx2Dvcs.dll
 - 2006-11-02 12:35:24 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 + 2008-01-19 07:38:34 507,904 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Ink\6.0.0.0__31bf3856ad​364e35\Microsoft.Ink.dll
 - 2006-11-02 12:36:03 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 + 2008-01-05 11:21:39 151,552 ----a-w C:\Windows\assembly\GAC_32\Mic​rosoft.Transactions.Bridge.Dtc​\3.0.0.0__b03f5f7f11d50a3a\Mic​rosoft.Transactions.Bridge.Dtc​.dll
 - 2006-10-20 01:14:15 4,366,336 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 + 2008-01-05 11:26:32 4,444,160 ----a-w C:\Windows\assembly\GAC_32\msc​orlib\2.0.0.0__b77a5c561934e08​9\mscorlib.dll
 - 2006-11-02 09:47:03 39,936 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 + 2008-01-19 07:38:44 46,080 ----a-w C:\Windows\assembly\GAC_32\nap​crypt\6.0.0.0__31bf3856ad364e3​5\NAPCRYPT.DLL
 - 2006-11-02 09:47:03 98,816 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 + 2008-01-19 07:38:45 103,936 ----a-w C:\Windows\assembly\GAC_32\nap​hlpr\6.0.0.0__31bf3856ad364e35​\NAPHLPR.DLL
 - 2006-11-02 12:36:01 3,915,264 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 + 2008-01-05 11:21:53 4,174,336 ----a-w C:\Windows\assembly\GAC_32\Pre​sentationCore\3.0.0.0__31bf385​6ad364e35\PresentationCore.dll
 - 2006-10-20 01:14:47 482,304 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 + 2008-01-05 11:26:54 483,840 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data.OracleClient\2.0.0.0_​_b77a5c561934e089\System.Data.​OracleClient.dll
 - 2006-10-20 01:14:47 2,894,336 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 + 2008-01-05 11:26:54 3,036,160 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Data\2.0.0.0__b77a5c561934​e089\System.Data.dll
 - 2006-10-20 01:14:51 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 + 2008-01-05 11:26:55 258,048 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.dll
 - 2006-11-02 06:34:22 114,176 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 + 2008-01-19 03:22:55 113,664 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.EnterpriseServices\2.0.0.0​__b03f5f7f11d50a3a\System.Ente​rpriseServices.Wrapper.dll
 - 2006-11-02 12:36:01 344,064 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 + 2008-01-05 11:21:55 346,624 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Printing\3.0.0.0__31bf3856​ad364e35\System.Printing.dll
 - 2006-10-20 01:14:53 260,096 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 + 2008-01-05 11:26:59 261,120 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Transactions\2.0.0.0__b77a​5c561934e089\System.Transactio​ns.dll
 - 2008-05-21 05:50:17 5,156,864 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 + 2008-01-05 11:26:59 5,431,296 ----a-w C:\Windows\assembly\GAC_32\Sys​tem.Web\2.0.0.0__b03f5f7f11d50​a3a\System.Web.dll
 - 2006-10-20 01:13:37 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 + 2008-01-05 11:25:52 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\A​ccessibility\2.0.0.0__b03f5f7f​11d50a3a\Accessibility.dll
 - 2006-11-02 15:46:16 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 + 2008-01-05 11:26:11 315,392 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt.resources\2.0.0.0_​fr_b03f5f7f11d50a3a\aspnetmmce​xt.resources.dll
 - 2006-10-20 01:13:41 503,808 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 + 2008-01-05 11:25:59 507,904 ----a-w C:\Windows\assembly\GAC_MSIL\A​spNetMMCExt\2.0.0.0__b03f5f7f1​1d50a3a\AspNetMMCExt.dll
 - 2006-11-02 12:36:03 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 + 2008-01-05 11:21:39 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\C​omSvcConfig\3.0.0.0__b03f5f7f1​1d50a3a\ComSvcConfig.exe
 - 2006-10-20 01:13:56 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 + 2008-01-05 11:26:08 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\c​scompmgd\8.0.0.0__b03f5f7f11d5​0a3a\cscompmgd.dll
 - 2006-10-20 01:13:57 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 + 2008-01-05 11:26:11 5,120 ----a-w C:\Windows\assembly\GAC_MSIL\d​fsvc\2.0.0.0__b03f5f7f11d50a3a​\dfsvc.exe
 - 2008-04-23 04:27:53 864,256 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 + 2008-01-19 07:38:16 827,392 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepg\6.0.6000.0__31bf3856ad364​e35\ehepg.dll
 - 2006-11-02 12:35:28 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 + 2008-01-19 07:38:16 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\e​hepgdat\6.0.6000.0__31bf3856ad​364e35\ehepgdat.dll
 - 2008-04-23 04:27:55 135,168 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 + 2008-01-19 07:38:17 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\e​hexthost\6.0.6000.0__31bf3856a​d364e35\ehexthost.exe
 - 2008-04-23 04:27:56 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 + 2006-11-02 12:35:28 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiExtens\6.0.6000.0__31bf3856a​d364e35\ehiExtens.dll
 - 2006-11-02 12:35:32 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 + 2008-01-19 07:38:18 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiProxy\6.0.6000.0__31bf3856ad​364e35\ehiProxy.dll
 - 2006-11-02 12:35:30 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 + 2008-01-19 07:38:18 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiReplay\6.0.6000.0__31bf3856a​d364e35\ehiReplay.dll
 - 2006-11-02 12:35:32 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 + 2008-01-19 07:38:19 307,200 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiVidCtl\6.0.6000.0__31bf3856a​d364e35\ehiVidCtl.dll
 - 2006-11-02 12:35:34 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 + 2008-01-19 07:38:19 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\e​hiwmp\6.0.6000.0__31bf3856ad36​4e35\ehiwmp.dll
 - 2006-11-02 12:35:29 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 + 2008-01-19 07:38:19 520,192 ----a-w C:\Windows\assembly\GAC_MSIL\e​hRecObj\6.0.6000.0__31bf3856ad​364e35\ehRecObj.dll
 - 2008-04-23 04:27:59 4,374,528 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 + 2008-04-23 04:44:14 4,046,848 ----a-w C:\Windows\assembly\GAC_MSIL\e​hshell\6.0.6000.0__31bf3856ad3​64e35\ehshell.dll
 - 2006-11-02 15:46:10 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 + 2008-01-19 07:53:44 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer.Resources\6.0.0.0_f​r_31bf3856ad364e35\EventViewer​.resources.dll
 - 2006-11-02 09:46:54 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 + 2008-01-19 07:38:21 364,544 ----a-w C:\Windows\assembly\GAC_MSIL\E​ventViewer\6.0.0.0__31bf3856ad​364e35\EventViewer.dll
 - 2006-10-20 01:14:02 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 + 2008-01-05 11:26:12 8,192 ----a-w C:\Windows\assembly\GAC_MSIL\I​EExecRemote\2.0.0.0__b03f5f7f1​1d50a3a\IEExecRemote.dll
 - 2006-10-20 01:14:02 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 + 2008-01-05 11:26:12 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\I​EHost\2.0.0.0__b03f5f7f11d50a3​a\IEHost.dll
 - 2006-10-20 01:14:02 5,632 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 + 2008-01-05 11:26:13 6,656 ----a-w C:\Windows\assembly\GAC_MSIL\I​IEHost\2.0.0.0__b03f5f7f11d50a​3a\IIEHost.dll
 - 2006-11-02 12:35:29 200,704 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 + 2008-01-19 07:38:31 176,128 ----a-w C:\Windows\assembly\GAC_MSIL\m​cstore\6.0.6000.0__31bf3856ad3​64e35\mcstore.dll
 - 2006-11-02 15:46:16 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 + 2008-01-05 11:26:11 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine.resource​s\2.0.0.0_fr_b03f5f7f11d50a3a\​Microsoft.Build.Engine.resourc​es.dll
 - 2006-10-20 01:14:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 + 2008-01-05 11:26:17 348,160 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Engine\2.0.0.0_​_b03f5f7f11d50a3a\Microsoft.Bu​ild.Engine.dll
 - 2006-10-20 01:14:03 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 + 2008-01-05 11:26:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Framework\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Framework.dll
 - 2006-11-02 15:46:15 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 + 2008-01-05 11:26:11 139,264 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.Build.Tasks.resources​.dll
 - 2006-10-20 01:14:03 647,168 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 + 2008-01-05 11:26:17 655,360 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Tasks\2.0.0.0__​b03f5f7f11d50a3a\Microsoft.Bui​ld.Tasks.dll
 - 2006-11-02 15:46:12 10,240 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 + 2008-01-05 11:26:11 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.build.utilities.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\Microsoft.Build.Utilities.R​esources.dll
 - 2006-10-20 01:14:04 73,728 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 + 2008-01-05 11:26:17 77,824 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Build.Utilities\2.0.0​.0__b03f5f7f11d50a3a\Microsoft​.Build.Utilities.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 + 2008-01-19 07:53:49 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Ink.Resources\6.0.0.0​_fr_31bf3856ad364e35\Microsoft​.Ink.Resources.dll
 - 2006-11-02 15:46:13 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 + 2008-01-05 11:26:11 45,056 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Jscript.resources\8.0​.0.0_fr_b03f5f7f11d50a3a\Micro​soft.JScript.Resources.dll
 - 2006-10-20 01:14:04 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 + 2008-01-05 11:26:19 749,568 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.JScript\8.0.0.0__b03f​5f7f11d50a3a\Microsoft.JScript​.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 + 2008-01-19 07:53:50 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole.Res​ources\3.0.0.0_fr_31bf3856ad36​4e35\Microsoft.ManagementConso​le.Resources.dll
 - 2006-11-02 09:47:01 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 + 2008-01-19 07:38:35 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.ManagementConsole\3.0​.0.0__31bf3856ad364e35\Microso​ft.ManagementConsole.dll
 - 2008-04-23 04:28:14 1,196,032 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 + 2008-01-19 07:38:36 1,241,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Shell\6.0​.6000.0__31bf3856ad364e35\Micr​osoft.MediaCenter.Shell.dll
 - 2006-11-02 12:35:33 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 + 2008-01-19 07:38:36 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.Sports\6.​0.6000.0__31bf3856ad364e35\Mic​rosoft.MediaCenter.Sports.dll
 - 2008-04-23 04:28:14 2,342,912 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 + 2008-04-23 04:45:00 1,957,888 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter.UI\6.0.60​00.0__31bf3856ad364e35\Microso​ft.MediaCenter.UI.dll
 - 2008-04-23 04:28:13 217,088 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 + 2008-01-19 07:38:35 204,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.MediaCenter\6.0.6000.​0__31bf3856ad364e35\Microsoft.​MediaCenter.dll
 - 2006-11-02 15:46:16 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 + 2008-01-05 11:26:41 19,456 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge.r​esources\3.0.0.0_fr_b03f5f7f11​d50a3a\Microsoft.Transactions.​Bridge.Resources.dll
 - 2006-11-02 12:36:03 352,256 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 + 2008-01-05 11:21:39 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Transactions.Bridge\3​.0.0.0__b03f5f7f11d50a3a\Micro​soft.Transactions.Bridge.dll
 - 2006-11-02 15:46:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 + 2008-01-05 11:26:17 9,216 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.data.resources\8.0.0.0_fr​_b03f5f7f11d50a3a\Microsoft.Vi​sualBasic.Compatibility.Data.r​esources.dll
 - 2006-10-20 01:14:05 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 + 2008-01-05 11:26:19 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity.Data\8.0.0.0__b03f5f7f11d​50a3a\Microsoft.VisualBasic.Co​mpatibility.Data.dll
 - 2006-11-02 15:46:09 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 + 2008-01-05 11:26:17 9,728 ----a-w C:\Windows\assembly\GAC_MSIL\m​icrosoft.visualbasic.compatibi​lity.resources\8.0.0.0_fr_b03f​5f7f11d50a3a\Microsoft.VisualB​asic.Compatibility.resources.d​ll
 - 2006-10-20 01:14:05 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 + 2008-01-05 11:26:23 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Compatibi​lity\8.0.0.0__b03f5f7f11d50a3a​\Microsoft.VisualBasic.Compati​bility.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 + 2008-01-05 11:26:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.resources​\8.0.0.0_fr_b03f5f7f11d50a3a\M​icrosoft.VisualBasic.resources​.dll
 - 2006-10-20 01:14:05 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 + 2008-01-05 11:26:23 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic.Vsa\8.0.0​.0__b03f5f7f11d50a3a\Microsoft​.VisualBasic.Vsa.dll
 - 2006-10-20 01:14:05 667,648 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 + 2008-01-05 11:26:23 671,744 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.VisualBasic\8.0.0.0__​b03f5f7f11d50a3a\Microsoft.Vis​ualBasic.dll
 - 2006-10-20 01:14:05 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 + 2008-01-05 11:26:24 12,800 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa.Vb.CodeDOMProcess​or\8.0.0.0__b03f5f7f11d50a3a\M​icrosoft.Vsa.Vb.CodeDOMProcess​or.dll
 - 2006-10-20 01:14:05 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 + 2008-01-05 11:26:23 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\M​icrosoft.Vsa\8.0.0.0__b03f5f7f​11d50a3a\Microsoft.Vsa.dll
 - 2006-11-02 15:46:16 1,400,832 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 + 2008-01-19 07:53:52 1,515,520 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls.Resources\1.0.0.0​_fr_31bf3856ad364e35\MIGUICont​rols.resources.dll
 - 2006-11-02 09:47:03 3,100,672 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 + 2008-01-19 07:38:41 3,371,008 ----a-w C:\Windows\assembly\GAC_MSIL\M​iguiControls\1.0.0.0__31bf3856​ad364e35\MIGUIControls.dll
 - 2006-11-02 09:47:03 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 + 2008-01-19 07:38:41 417,792 ----a-w C:\Windows\assembly\GAC_MSIL\M​MCEx\3.0.0.0__31bf3856ad364e35​\MMCEx.dll
 - 2006-11-02 15:46:13 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 + 2008-01-05 11:26:12 311,296 ----a-w C:\Windows\assembly\GAC_MSIL\m​scorlib.resources\2.0.0.0_fr_b​77a5c561934e089\mscorlib.Resou​rces.dll
 - 2006-11-02 09:47:03 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 + 2008-01-19 07:38:45 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\n​apinit\6.0.0.0__31bf3856ad364e​35\NAPINIT.DLL
 - 2006-11-02 15:46:15 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 + 2008-01-19 07:53:54 245,760 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap.resources\6.0.0.0_fr_31​bf3856ad364e35\napsnap.resourc​es.dll
 - 2006-11-02 09:47:04 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 + 2008-01-19 07:38:45 458,752 ----a-w C:\Windows\assembly\GAC_MSIL\n​apsnap\6.0.0.0__31bf3856ad364e​35\NAPSNAP.DLL
 - 2006-11-02 12:36:00 593,920 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 + 2008-01-05 11:21:52 602,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationBuildTasks\3.0.0.0_​_31bf3856ad364e35\Presentation​BuildTasks.dll
 - 2006-11-02 12:36:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 + 2008-01-05 11:21:52 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationCFFRasterizer\3.0.0​.0__31bf3856ad364e35\Presentat​ionCFFRasterizer.dll
 - 2006-11-02 12:36:01 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 + 2008-01-05 11:21:53 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFontCache\3.0.0.0__​31bf3856ad364e35\PresentationF​ontCache.exe
 - 2006-11-02 12:36:01 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 + 2008-01-05 11:21:53 184,320 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Aero\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Aero.dll
 - 2006-11-02 12:36:01 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 + 2008-01-05 11:21:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Classic\3​.0.0.0__31bf3856ad364e35\Prese​ntationFramework.Classic.dll
 - 2006-11-02 12:36:01 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 + 2008-01-05 11:21:53 376,832 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Luna\3.0.​0.0__31bf3856ad364e35\Presenta​tionFramework.Luna.dll
 - 2006-11-02 12:36:01 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 + 2008-01-05 11:21:54 151,552 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework.Royale\3.​0.0.0__31bf3856ad364e35\Presen​tationFramework.Royale.dll
 - 2006-11-02 12:36:01 4,972,544 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 + 2008-01-05 11:21:53 5,210,112 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationFramework\3.0.0.0__​31bf3856ad364e35\PresentationF​ramework.dll
 - 2006-11-02 12:36:00 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 + 2008-01-05 11:21:55 897,024 ----a-w C:\Windows\assembly\GAC_MSIL\P​resentationUI\3.0.0.0__31bf385​6ad364e35\PresentationUI.dll
 - 2006-11-02 12:36:00 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 + 2008-01-05 11:21:55 528,384 ----a-w C:\Windows\assembly\GAC_MSIL\R​eachFramework\3.0.0.0__31bf385​6ad364e35\ReachFramework.dll
 - 2006-11-02 12:36:03 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 + 2008-01-05 11:21:39 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​erviceModelReg\3.0.0.0__b03f5f​7f11d50a3a\ServiceModelReg.exe
 - 2006-11-02 12:36:03 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 + 2008-01-05 11:21:39 102,400 ----a-w C:\Windows\assembly\GAC_MSIL\S​MDiagnostics\3.0.0.0__b77a5c56​1934e089\SMdiagnostics.dll
 - 2006-11-02 12:36:02 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 + 2008-01-05 11:21:39 122,880 ----a-w C:\Windows\assembly\GAC_MSIL\S​MSvcHost\3.0.0.0__b03f5f7f11d5​0a3a\SMSvcHost.exe
 - 2006-11-02 15:46:15 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 + 2008-01-05 11:26:12 10,752 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl.resources\2.0.0.0_fr_b​03f5f7f11d50a3a\sysglobl.resou​rces.dll
 - 2006-10-20 01:14:46 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 + 2008-01-05 11:26:54 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\s​ysglobl\2.0.0.0__b03f5f7f11d50​a3a\sysglobl.dll
 - 2006-11-02 15:46:15 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 + 2008-01-05 11:26:12 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install.re​sources\2.0.0.0_fr_b03f5f7f11d​50a3a\System.Configuration.Ins​tall.Resources.dll
 - 2006-10-20 01:14:46 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 + 2008-01-05 11:26:54 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration.Install\2.​0.0.0__b03f5f7f11d50a3a\System​.Configuration.Install.dll
 - 2006-11-02 15:46:10 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 + 2008-01-05 11:26:12 49,152 ----a-w C:\Windows\assembly\GAC_MSIL\s​ystem.configuration.resources\​2.0.0.0_fr_b03f5f7f11d50a3a\Sy​stem.Configuration.resources.d​ll
 - 2006-10-20 01:14:46 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 + 2008-01-05 11:26:54 425,984 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Configuration\2.0.0.0__b​03f5f7f11d50a3a\System.configu​ration.dll
 - 2006-11-02 15:46:16 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 + 2008-01-05 11:26:12 110,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.OracleClient.resour​ces\2.0.0.0_fr_b77a5c561934e08​9\System.Data.OracleClient.res​ources.dll
 - 2006-11-02 15:46:11 335,872 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 + 2008-01-05 11:26:13 344,064 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.resources\2.0.0.0_f​r_b77a5c561934e089\System.Data​.Resources.dll
 - 2006-11-02 15:46:17 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 + 2008-01-05 11:26:13 36,864 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml.resources\2.​0.0.0_fr_b77a5c561934e089\syst​em.data.sqlxml.resources.dll
 - 2006-10-20 01:14:48 716,800 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 + 2008-01-05 11:26:55 741,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Data.SqlXml\2.0.0.0__b77​a5c561934e089\System.Data.SqlX​ml.dll
 - 2006-11-02 15:46:16 385,024 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 + 2008-01-05 11:26:14 389,120 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Deployment.resources.dll
 - 2006-10-20 01:14:49 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 + 2008-01-05 11:26:55 933,888 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Deployment\2.0.0.0__b03f​5f7f11d50a3a\System.Deployment​.dll
 - 2006-11-02 15:46:09 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 + 2008-01-05 11:26:14 544,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design.resources\2.0.0.0​_fr_b03f5f7f11d50a3a\System.De​sign.Resources.dll
 - 2006-10-20 01:14:49 5,050,368 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 + 2008-01-05 11:26:55 5,070,848 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Design\2.0.0.0__b03f5f7f​11d50a3a\System.Design.dll
 - 2006-11-02 15:46:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 + 2008-01-05 11:26:14 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols.resources\2.0.0.0_fr_b03f5​f7f11d50a3a\System.DirectorySe​rvices.Protocols.resources.dll
 - 2006-10-20 01:14:50 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 + 2008-01-05 11:26:55 188,416 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.Protoc​ols\2.0.0.0__b03f5f7f11d50a3a\​System.DirectoryServices.Proto​cols.dll
 - 2006-11-02 15:46:18 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 + 2008-01-05 11:26:16 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices.resour​ces\2.0.0.0_fr_b03f5f7f11d50a3​a\System.DirectoryServices.Res​ources.dll
 - 2006-10-20 01:14:50 397,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 + 2008-01-05 11:26:55 401,408 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.DirectoryServices\2.0.0.​0__b03f5f7f11d50a3a\System.Dir​ectoryServices.dll
 - 2006-11-02 15:46:10 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 + 2008-01-05 11:26:16 6,144 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.Drawing.Design.Resources​.dll
 - 2006-10-20 01:14:51 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 + 2008-01-05 11:26:55 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.Design\2.0.0.0__​b03f5f7f11d50a3a\System.Drawin​g.Design.dll
 - 2006-11-02 15:46:13 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 + 2008-01-05 11:26:16 15,360 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.D​rawing.Resources.dll
 - 2006-10-20 01:14:51 704,512 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 + 2008-01-05 11:26:55 630,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Drawing\2.0.0.0__b03f5f7​f11d50a3a\System.Drawing.dll
 - 2006-11-02 15:46:11 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.EnterpriseServices.resou​rces\2.0.0.0_fr_b03f5f7f11d50a​3a\System.EnterpriseServices.R​esources.dll
 - 2006-11-02 15:46:10 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 + 2008-01-05 11:26:37 65,536 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.resources\​3.0.0.0_fr_b77a5c561934e089\Sy​stem.IdentityModel.Resources.d​ll
 - 2006-11-02 15:46:09 53,248 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 + 2008-01-05 11:26:39 57,344 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors.​resources\3.0.0.0_fr_b77a5c561​934e089\System.IdentityModel.S​electors.Resources.dll
 - 2006-11-02 12:36:02 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 + 2008-01-05 11:21:38 126,976 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel.Selectors\​3.0.0.0__b77a5c561934e089\Syst​em.IdentityModel.Selectors.dll
 - 2006-11-02 12:36:02 413,696 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 + 2008-01-05 11:21:37 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IdentityModel\3.0.0.0__b​77a5c561934e089\System.Identit​yModel.dll
 - 2006-11-02 12:36:02 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 + 2008-01-05 11:21:38 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.IO.Log\3.0.0.0__b03f5f7f​11d50a3a\System.IO.Log.dll
 - 2006-11-02 15:46:09 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 + 2008-01-05 11:26:17 13,312 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Management.Resources.dll
 - 2006-10-20 01:14:52 368,640 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 + 2008-01-05 11:26:58 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Management\2.0.0.0__b03f​5f7f11d50a3a\System.Management​.dll
 - 2006-11-02 15:46:11 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 + 2008-01-05 11:26:17 61,440 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging.resources\2.0.​0.0_fr_b03f5f7f11d50a3a\System​.Messaging.Resources.dll
 - 2006-10-20 01:14:52 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Messaging\2.0.0.0__b03f5​f7f11d50a3a\System.Messaging.d​ll
 - 2006-11-02 15:46:11 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 + 2008-01-05 11:26:17 212,992 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.resources\2.0.0.0_fr_b77​a5c561934e089\system.Resources​.dll
 - 2006-11-02 15:46:08 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 + 2008-01-05 11:26:17 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting.resourc​es\2.0.0.0_fr_b77a5c561934e089​\System.Runtime.Remoting.Resou​rces.dll
 - 2006-10-20 01:14:53 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 + 2008-01-05 11:26:58 299,008 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Remoting\2.0.0.0​__b77a5c561934e089\System.Runt​ime.Remoting.dll
 - 2006-11-02 15:46:13 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 + 2008-01-05 11:26:17 11,776 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap.resources\2.0.0.​0_fr_b03f5f7f11d50a3a\System.R​untime.Serialization.Formatter​s.Soap.Resources.dll
 - 2006-10-20 01:14:53 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 + 2008-01-05 11:26:58 131,072 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.Fo​rmatters.Soap\2.0.0.0__b03f5f7​f11d50a3a\System.Runtime.Seria​lization.Formatters.Soap.dll
 - 2006-11-02 15:46:13 94,208 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 + 2008-01-05 11:26:41 98,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization.re​sources\3.0.0.0_fr_b77a5c56193​4e089\System.RunTime.Serializa​tion.Resources.dll
 - 2006-11-02 12:36:03 888,832 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 + 2008-01-05 11:21:38 929,792 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Runtime.Serialization\3.​0.0.0__b77a5c561934e089\System​.Runtime.Serialization.dll
 - 2006-11-02 15:46:10 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 + 2008-01-05 11:26:17 28,672 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security.resources\2.0.0​.0_fr_b03f5f7f11d50a3a\System.​Security.Resources.dll
 - 2006-10-20 01:14:53 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 + 2008-01-05 11:26:58 258,048 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Security\2.0.0.0__b03f5f​7f11d50a3a\System.Security.dll
 - 2006-11-02 12:36:02 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 + 2008-01-05 11:21:40 159,744 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.Install\3.0​.0.0__b77a5c561934e089\System.​ServiceModel.Install.dll
 - 2006-11-02 15:46:14 475,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 + 2008-01-05 11:26:41 499,712 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.resources\3​.0.0.0_fr_b77a5c561934e089\Sys​tem.ServiceModel.Resources.dll
 - 2006-11-02 12:36:03 16,384 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 + 2008-01-05 11:21:40 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel.WasHosting\​3.0.0.0__b77a5c561934e089\Syst​em.ServiceModel.WasHosting.dll
 - 2006-11-02 12:36:03 5,672,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 + 2008-01-05 11:21:38 5,971,968 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceModel\3.0.0.0__b7​7a5c561934e089\System.ServiceM​odel.dll
 - 2006-11-02 15:46:13 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 + 2008-01-05 11:26:17 40,960 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess.resources​\2.0.0.0_fr_b03f5f7f11d50a3a\S​ystem.ServiceProcess.Resources​.dll
 - 2006-10-20 01:14:53 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 + 2008-01-05 11:26:58 114,688 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.ServiceProcess\2.0.0.0__​b03f5f7f11d50a3a\System.Servic​eProcess.dll
 - 2006-11-02 12:36:01 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 + 2008-01-05 11:21:55 688,128 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Speech\3.0.0.0__31bf3856​ad364e35\System.Speech.dll
 - 2006-11-02 15:46:11 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 + 2008-01-05 11:26:17 16,896 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Transactions.resources\2​.0.0.0_fr_b77a5c561934e089\Sys​tem.Transactions.resources.dll
 - 2006-11-02 15:46:09 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile.resources\2.0​.0.0_fr_b03f5f7f11d50a3a\Syste​m.Web.Mobile.resources.dll
 - 2006-10-20 01:14:54 835,584 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 + 2008-01-05 11:26:59 884,736 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Mobile\2.0.0.0__b03f​5f7f11d50a3a\System.Web.Mobile​.dll
 - 2006-10-20 01:14:55 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 + 2008-01-05 11:26:59 90,112 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.RegularExpressions\2​.0.0.0__b03f5f7f11d50a3a\Syste​m.Web.RegularExpressions.dll
 - 2008-05-21 05:50:18 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 + 2008-01-05 11:26:17 618,496 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.resources\2.0.0.0_fr​_b03f5f7f11d50a3a\System.Web.R​esources.dll
 - 2006-11-02 15:46:16 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 + 2008-01-05 11:26:17 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services.resources\2​.0.0.0_fr_b03f5f7f11d50a3a\Sys​tem.Web.Services.Resources.dll
 - 2006-10-20 01:14:55 823,296 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 + 2008-01-05 11:27:00 839,680 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Web.Services\2.0.0.0__b0​3f5f7f11d50a3a\System.Web.Serv​ices.dll
 - 2006-11-02 15:46:16 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 + 2008-01-05 11:26:17 430,080 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms.resources\​2.0.0.0_fr_b77a5c561934e089\Sy​stem.Windows.Forms.Resources.d​ll
 - 2006-10-20 01:14:56 5,414,912 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 + 2008-01-05 11:27:02 5,013,504 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Windows.Forms\2.0.0.0__b​77a5c561934e089\System.Windows​.Forms.dll
 - 2006-11-02 15:46:09 191,304 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 + 2008-01-05 11:26:54 193,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities.reso​urces\3.0.0.0_fr_31bf3856ad364​e35\System.Workflow.Activities​.resources.dll
 - 2006-11-02 12:36:00 1,108,784 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 + 2008-01-05 11:22:14 1,152,040 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Activities\3.0.​0.0__31bf3856ad364e35\System.W​orkflow.Activities.dll
 - 2006-11-02 15:46:15 318,288 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 + 2008-01-05 11:26:54 320,576 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel.​resources\3.0.0.0_fr_31bf3856a​d364e35\System.Workflow.Compon​entModel.resources.dll
 - 2006-11-02 12:36:00 1,641,272 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 + 2008-01-05 11:22:15 1,635,376 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.ComponentModel\​3.0.0.0__31bf3856ad364e35\Syst​em.Workflow.ComponentModel.dll
 - 2006-11-02 15:46:12 43,840 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 + 2008-01-05 11:26:54 46,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime.resourc​es\3.0.0.0_fr_31bf3856ad364e35​\System.Workflow.Runtime.resou​rces.dll
 - 2006-11-02 12:36:00 588,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 + 2008-01-05 11:22:15 578,592 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Workflow.Runtime\3.0.0.0​__31bf3856ad364e35\System.Work​flow.Runtime.dll
 - 2006-11-02 15:46:09 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 + 2008-01-05 11:26:17 167,936 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.XML.resources\2.0.0.0_fr​_b77a5c561934e089\System.xml.R​esources.dll
 - 2006-10-20 01:14:58 2,039,808 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 + 2008-01-05 11:27:03 2,068,480 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem.Xml\2.0.0.0__b77a5c56193​4e089\System.XML.dll
 - 2006-10-20 01:14:51 3,035,136 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 + 2008-01-05 11:26:55 3,076,096 ----a-w C:\Windows\assembly\GAC_MSIL\S​ystem\2.0.0.0__b77a5c561934e08​9\System.dll
 - 2006-11-02 15:46:16 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 + 2008-01-19 07:54:01 7,680 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler.Resources\6.0.0.0​_fr_31bf3856ad364e35\TaskSched​uler.resources.dll
 - 2006-11-02 09:47:22 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 + 2008-01-19 07:39:26 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\T​askScheduler\6.0.0.0__31bf3856​ad364e35\TaskScheduler.dll
 - 2006-11-02 12:36:01 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 + 2008-01-05 11:21:56 163,840 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClient\3.0.0.0__31b​f3856ad364e35\UIAutomationClie​nt.dll
 - 2006-11-02 12:36:01 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 + 2008-01-05 11:22:00 372,736 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationClientsideProviders​\3.0.0.0__31bf3856ad364e35\UIA​utomationClientsideProviders.d​ll
 - 2006-11-02 12:36:01 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 + 2008-01-05 11:22:00 32,768 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationProvider\3.0.0.0__3​1bf3856ad364e35\UIAutomationPr​ovider.dll
 - 2006-11-02 12:36:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 + 2008-01-05 11:22:00 86,016 ----a-w C:\Windows\assembly\GAC_MSIL\U​IAutomationTypes\3.0.0.0__31bf​3856ad364e35\UIAutomationTypes​.dll
 - 2006-11-02 12:36:00 1,167,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 + 2008-01-05 11:22:00 1,204,224 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsBase\3.0.0.0__31bf3856ad​364e35\WindowsBase.dll
 - 2006-11-02 12:36:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 + 2008-01-05 11:22:01 81,920 ----a-w C:\Windows\assembly\GAC_MSIL\W​indowsFormsIntegration\3.0.0.0​__31bf3856ad364e35\WindowsForm​sIntegration.dll
 - 2006-11-02 12:36:03 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-01-05 11:21:40 143,360 ----a-w C:\Windows\assembly\GAC_MSIL\W​satConfig\3.0.0.0__b03f5f7f11d​50a3a\WsatConfig.exe
 + 2008-07-23 22:21:26 27,136 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Accessibility​\e2170385d6492ce6539124c5a3b36​1a8\Accessibility.ni.dll
 + 2008-07-23 22:27:37 884,736 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\AspNetMMCExt\​b3a5c81e91bf9b1e63697e53a41ac0​ed\AspNetMMCExt.ni.dll
 + 2008-07-23 22:25:00 425,984 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\BDATunePIA\7b​38b32ba60b3eb9195c4e1fcc2c3b9d​\BDATunePIA.ni.dll
 + 2008-07-23 22:25:04 503,808 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ComSvcConfig\​a29c71731e54f91d32ccc55d549312​6d\ComSvcConfig.ni.exe
 + 2008-07-23 22:27:37 237,568 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\CustomMarshal​ers\8b7076d09705567c6431176b69​3597ab\CustomMarshalers.ni.dll
 + 2008-07-23 22:27:38 15,360 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\dfsvc\314a2a2​c7ac434889e2478150e910adf\dfsv​c.ni.exe
 + 2008-07-23 22:27:38 249,856 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehCIR\56309ef​1e57faa5e1c01a04a7e3aefc2\ehCI​R.ni.dll
 + 2008-07-23 22:26:07 2,428,928 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepg\71e74bb​49db5f69f8ed020dd1cb0b6b6\ehep​g.ni.dll
 + 2008-07-23 22:26:15 360,448 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehepgdat\507f​31ea7666854edb2752be04453c54\e​hepgdat.ni.dll
 + 2008-07-23 22:27:39 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtCOM\12b1​c96d740bd58807beab61bb7a83e6\e​hExtCOM.ni.dll
 + 2008-07-23 22:26:16 270,336 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehExtHost\877​e9f90267ecd61069716bd5c5c62b5\​ehExtHost.ni.exe
 + 2008-07-23 22:26:48 24,576 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtCOM\969​0acf6b16810061de6ed44368980a9\​ehiExtCOM.ni.dll
 + 2008-07-23 22:26:17 188,416 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiExtens\526​10279dc1c7658eafbf00b8d197bf9\​ehiExtens.ni.dll
 + 2008-07-23 22:26:18 610,304 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiPlay\6c123​aa14560b7dff4968bcfbcc48ba6\eh​iPlay.ni.dll
 + 2008-07-23 22:26:08 983,040 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiProxy\5f8a​ee18344b9910bbec6af974c074d5\e​hiProxy.ni.dll
 + 2008-07-23 22:26:18 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiReplay\0b31398ed7a071f087b271393a52203​8\ehiReplay.ni.dll
 + 2008-07-23 22:26:14 58,368 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiUserXp\ca1​5bb63e13565d7b8b168403a0dbf37\​ehiUserXp.ni.dll
 + 2008-07-23 22:26:19 839,680 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiVidCtl\f14​b581820693d30efb00f6c2753ff1a\​ehiVidCtl.ni.dll
 + 2008-07-23 22:26:20 376,832 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiwmp\54da10​294f5f71396a622da622c8c820\ehi​wmp.ni.dll
 + 2008-07-23 22:26:23 122,880 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehiWUapi\9a8d​bbf00820151502bf5886759bd9ff\e​hiWUapi.ni.dll
 + 2008-07-23 22:26:23 1,949,696 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehRecObj\7b99​0bb48f1fb6b6c8a1008922579cbd\e​hRecObj.ni.dll
 + 2008-07-23 22:26:47 12,742,656 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ehshell\41dde​58a0d3b2a978513f2a530590aae\eh​shell.ni.dll
 + 2008-07-23 22:26:52 577,536 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\EventViewer\3​68debb045e28955b65910779050ecc​c\EventViewer.ni.dll
 + 2008-07-23 22:26:48 86,016 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\loadmxf\91672​362ea8e76d7800c6d3176364d0b\lo​admxf.ni.exe
 + 2008-07-23 22:26:25 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstore\ce943​20ce05675ecc24593041cd9ca15\mc​store.ni.dll
 + 2008-07-23 22:26:26 315,392 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcstoredb\6aa​5747fb711f9d478b1b943fddf2b61\​mcstoredb.ni.dll
 + 2008-07-23 22:27:05 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mcupdate\98e5​b56f1514e49a2dce1134beed3eda\m​cupdate.ni.exe
 + 2008-07-23 22:26:48 258,048 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Mcx2Dvcs\81d0​64c3c21181a4a5ec456becbbef4c\M​cx2Dvcs.ni.dll
 + 2008-07-23 22:27:41 876,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Eng#\e24c7a7e58f9b3432df623​710b9c5e01\Microsoft.Build.Eng​ine.ni.dll
 + 2008-07-23 22:27:41 81,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Fra#\6dc26698fcb3f0f93759f3​c38a6207d5\Microsoft.Build.Fra​mework.ni.dll
 + 2008-07-23 22:27:44 1,695,744 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Tas#\87407c2d9c2530f716841b​6d6ebdf563\Microsoft.Build.Tas​ks.ni.dll
 + 2008-07-23 22:27:45 167,936 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Bui​ld.Uti#\bdd6a68dce3ff4146b24af​df9759402b\Microsoft.Build.Uti​lities.ni.dll
 + 2008-07-23 22:27:08 1,441,792 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Ink​\d521fc6793855857df18b7cb9ab0a​caa\Microsoft.Ink.ni.dll
 + 2008-07-23 22:27:31 2,441,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.JSc​ript\2f558d3a6d024dfcdd1d62233​a067b40\Microsoft.JScript.ni.d​ll
 + 2008-07-23 22:26:54 614,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Man​agemen#\b059345a9c2a126e320e17​c2090dd354\Microsoft.Managemen​tConsole.ni.dll
 + 2008-07-23 22:26:17 618,496 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\14343af24080e0f0b2acd8​69f6d1211d\Microsoft.MediaCent​er.ni.dll
 + 2008-07-23 22:26:24 253,952 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\288266751f2bcc9d673520​ed1d1ac7a2\Microsoft.MediaCent​er.Shell.ni.dll
 + 2008-07-23 22:26:14 5,861,376 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\7ffb1a8f14e79ec2ea006e​54a4162c18\Microsoft.MediaCent​er.UI.ni.dll
 + 2008-07-23 22:26:27 704,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Med​iaCent#\88cdfe079a647ffba0850e​19ec3d2711\Microsoft.MediaCent​er.Sports.ni.dll
 + 2008-07-23 22:26:04 1,232,896 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\198b25c569e8a6fbb78092​fe9c697600\Microsoft.Transacti​ons.Bridge.ni.dll
 + 2008-07-23 22:27:15 401,408 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Tra​nsacti#\b0da39820e35eb3821e69a​c8ace491a1\Microsoft.Transacti​ons.Bridge.Dtc.ni.dll
 + 2008-07-23 22:27:47 1,740,800 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualBas#\a96c6b0c75f8ea3eb13301​8ba3b49f3f\Microsoft.VisualBas​ic.ni.dll
 + 2008-07-23 22:21:54 17,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vis​ualC\ce2416df0a2df3ab6f06673c5​45d71de\Microsoft.VisualC.ni.d​ll
 + 2008-07-23 22:27:32 77,824 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Microsoft.Vsa​\81c771cf263c377d46aaf249c7ab9​03a\Microsoft.Vsa.ni.dll
 + 2008-07-23 22:27:02 6,443,008 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MIGUIControls​\66ad568e1ea098a2099364bf66bda​ed8\MIGUIControls.ni.dll
 + 2008-07-23 22:27:18 1,691,648 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCEx\f5934f1​b89f7c8fb3f0bab1c21045f1c\MMCE​x.ni.dll
 + 2008-07-23 22:26:54 319,488 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\MMCFxCommon\a​3d6cbb5a1efbd314e7080bbbd78d1c​d\MMCFxCommon.ni.dll
 + 2008-07-23 22:16:46 11,722,752 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\mscorlib\5b3e​3b0551bcaa722c27dbb089c431e4\m​scorlib.ni.dll
 + 2008-07-23 22:27:18 102,400 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napcrypt\29d0​ab81098806db3b769de45054ea13\n​apcrypt.ni.dll
 + 2008-07-23 22:27:19 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\naphlpr\65fba​2f3c000945397537d9646148f6c\na​phlpr.ni.dll
 + 2008-07-23 22:27:20 126,976 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napinit\ad708​02a13332254382fd4bddbfbc8b3\na​pinit.ni.dll
 + 2008-07-23 22:27:21 737,280 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\napsnap\ae9a5​64a6dd8814ba0ec381fd07be4bb\na​psnap.ni.dll
 + 2008-07-23 22:27:50 2,641,920 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Narrator\1b89​6bbb7ed678902995f5a2479962e8\N​arrator.ni.exe
 + 2008-07-23 22:27:52 1,581,056 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationB​uildTa#\7c78c24952fad7252c7ff7​f739fd6198\PresentationBuildTa​sks.ni.dll
 + 2008-07-23 22:22:06 40,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​FFRast#\b4a8dfd870b136a2c16abd​23850b99cb\PresentationCFFRast​erizer.ni.dll
 + 2008-07-23 22:19:03 12,570,624 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationC​ore\adcba7206e27f493c9f161339a​668cd1\PresentationCore.ni.dll
 + 2008-07-23 22:19:08 49,152 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ontCac#\f4bbb8d27bd38e1aec2ee0​a0a9646b31\PresentationFontCac​he.ni.exe
 + 2008-07-23 22:22:59 552,960 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\4bd2d5a15bb5178df5c5d2​4ef9003bb6\PresentationFramewo​rk.Luna.ni.dll
 + 2008-07-23 22:22:58 393,216 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\75438038f0d98e04583d01​68d671981e\PresentationFramewo​rk.Aero.ni.dll
 + 2008-07-23 22:22:56 15,040,512 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\7606ee23b2b3fd1d5d3d1c​10011d3ecc\PresentationFramewo​rk.ni.dll
 + 2008-07-23 22:23:00 274,432 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\e5c191994a86a85fa0b730​41297bf650\PresentationFramewo​rk.Royale.ni.dll
 + 2008-07-23 22:22:58 245,760 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationF​ramewo#\edbcf79ab063533f570e1f​4820a9e49b\PresentationFramewo​rk.Classic.ni.dll
 + 2008-07-23 22:27:58 2,035,712 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\PresentationU​I\fa8522105eb716eed71e99bb9bfe​06ee\PresentationUI.ni.dll
 + 2008-07-23 22:28:03 2,416,640 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ReachFramewor​k\99836ab309902e40176dc5ca0854​f7b2\ReachFramework.ni.dll
 + 2008-07-23 22:27:21 139,264 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\ServiceModelR​eg\b682f5929b1f3f2a0b585cbc999​df489\ServiceModelReg.ni.exe
 + 2008-07-23 22:25:55 303,104 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMDiagnostics​\ee487a5b3e62f510183f68538f583​135\SMDiagnostics.ni.dll
 + 2008-07-23 22:27:23 323,584 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\SMSvcHost\470​e3064a09dc8107667143d09811786\​SMSvcHost.ni.exe
 + 2008-07-23 22:26:08 44,544 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\stdole\07c3757edda55c714c4e69a94be4e35​e\stdole.ni.dll
 + 2008-07-23 22:28:10 262,144 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\sysglobl\8113​05f0e9b3729e5a6a991b6645de92\s​ysglobl.ni.dll
 + 2008-07-23 22:20:06 163,840 ----a-w C:\Windows\assembly\NativeImag​es_v2.0.50727_32\Syst

da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 24/07/2008 à 16:16:52  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
Logfile of Trend Micro HijackThis v2.0.2
 Scan saved at 16:17:55, on 24/07/2008
 Platform: Windows Vista SP1 (WinNT 6.00.1905)
 MSIE: Internet Explorer v7.00 (7.00.6001.18000)
 Boot mode: Safe mode

 Running processes:
 C:\Windows\system32\wbem\unsec​app.exe
 C:\Windows\Explorer.exe
 C:\Program Files\Trend Micro\HijackThis\HijackThis.ex​e

 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://www.aliceadsl.fr/
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Default_Search_U​RL = http://go.microsoft.com/fwlink/?LinkId=54896
 R1 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
 R0 - HKLM\Software\Microsoft\Intern​et Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
 R1 - HKCU\Software\Microsoft\Window​s\CurrentVersion\Internet Settings,ProxyOverride = *.local
 R0 - HKCU\Software\Microsoft\Intern​et Explorer\Toolbar,LinksFolderNa​me =
 R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695E​CA05670} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A5​3123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\Np​pBho.dll
 O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-51647​60863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
 O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9​C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UI​BHO.dll
 O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB​0476E29} - C:\Windows\system32\eDStoolbar​.dll
 O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-00902​71D4F88} - C:\Program Files\Yahoo!\Companion\Install​s\cpn\yt.dll
 O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B​4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
 O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4​931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBA​R.DLL
 O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
 O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
 O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
 O4 - HKLM\..\Run: [Acer Empowering Technology Monitor] C:\Acer\Empowering Technology\SysMonitor.exe
 O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSlo​ader.exe
 O4 - HKLM\..\Run: [Malwarebytes Anti-Malware Reboot] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
 O4 - HKLM\..\Run: [MSConfig] "C:\Windows\system32\msconfig.​exe" /auto
 O4 - HKLM\..\RunOnce: [GrpConv] grpconv -o
 O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
 O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
 O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
 O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.​exe AcRdB7_1_0
 O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\fatlaflamme\Program Files\DNA\btdna.exe"
 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-19\..\RunOnce: []  (User 'SERVICE LOCAL')
 O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-20\..\RunOnce: []  (User 'SERVICE RÉSEAU')
 O4 - HKUS\S-1-5-18\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'SYSTEM')
 O4 - HKUS\S-1-5-18\..\RunOnce: []  (User 'SYSTEM')
 O4 - HKUS\.DEFAULT\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Stat​ic\CLIStart.exe (User 'Default user')
 O4 - HKUS\.DEFAULT\..\RunOnce: []  (User 'Default user')
 O4 - Global Startup: Empowering Technology Launcher.lnk = ?
 O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
 O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSha​ring.exe
 O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
 O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Off​ice12\EXCEL.EXE/3000
 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCD​DC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExten​sion.dll
 O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663E​E0C6C49} - C:\PROGRA~1\MICROS~2\Office12\​ONBttnIE.dll
 O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-08002​00c9a66} - C:\Windows\bdoscandel.exe (file missing)
 O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-08002​00c9a66} - C:\Windows\bdoscandel.exe (file missing)
 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C5​71A8263} - C:\PROGRA~1\MICROS~2\Office12\​REFIEBAR.DLL
 O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
 O13 - Gopher Prefix:
 O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw [...] ontrol.cab
 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-44455​3540000} (Shockwave Flash Object) - http://fpdownload2.macromedia. [...] wflash.cab
 O17 - HKLM\System\CCS\Services\Tcpip​\..\{DCD149D1-3A55-4C26-894A-D​FF1E8DEEA12}: NameServer = 213.36.80.1,192.168.1.1
 O22 - SharedTaskScheduler: Deskscapes - {EC654325-1273-C2A9-2B7C-45D29​BCE68FB} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\deskscapes.dll
 O22 - SharedTaskScheduler: Stardock Vista ControlPanel Extension - {EC654325-1273-C2A9-2B7C-45D29​BCE68FD} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\DesktopControlPanel.d​ll
 O22 - SharedTaskScheduler: StardockDreamController - {EC654325-1273-C2A9-2B7C-45D29​BCE68FF} - C:\PROGRA~1\Stardock\OBJECT~1\​DESKSC~1\DreamControl.dll
 O23 - Service: Acer HomeMedia Connect Service - CyberLink - C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\CLMSServer.​exe
 O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemChe​ck.exe
 O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceS​ervice.exe
 O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.e​xe
 O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.ex​e
 O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
 O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
 O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSSe​rvice.exe
 O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecovery​Service.exe
 O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
 O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
 O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
 O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\​LUCOMS~1.EXE
 O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
 O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61​-B58F-2F227FCA9A08}\PIFSvc.exe
 O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUS​chedulerSvc.exe
 O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
 O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
 O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

 --
 End of file - 9917 bytes

  1. homepage
naheulbeuk7
Membre impliqué (de 20 000 à 29 999 messages postés)
  1. Posté le 24/07/2008 à 21:02:44  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
bonsoir, plus de souci ? :)


---------------
Visitez mon site sur la sécurité informatique : http://www.site-naheulbeuk.com
da-dogteur
Bébé forumeur (De 10 à 49 messages postés)
  1. Posté le 25/07/2008 à 10:00:09  
  1. answer
  1. Prévenir les modérateurs en cas d'abus
 
salut Naheulbeuk le PC a l'air d'etre propre pas de souci. je te remercie!!!!!

 Page :
1  2
Dernière Page
Page Suivante
Page Précédente
Première Page

Aller à :
 

Sujets relatifs
virtumonde.dll [resolu] virtumonde, a l'aide
Virtumonde + known_bad_sites svp help me ! [résolu] Virtumonde
Infectée par virtumonde trojan virtumonde aidé moi svp [Résolu]
[resolu] infection virtumonde + pub intempestive Virtumonde application [RESOLU]
Win32.Adware.Virtumonde.FP.application  
Plus de sujets relatifs à : VIRTUMONDE

Les 5 sujets de discussion précédents Nombre de réponses Dernier message
VIRTUMONDE 0
aide virus pour virus.win32.sality.aa 3
Virus : Win32:Trojan-gen {Other} 9
Infecté par Malware Protector 7
graves problémes de pub,virus etc...RESOLU 32